Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 25 May 1999 15:26:17 +0100
From:      David Malone <dwmalone@maths.tcd.ie>
To:        freebsd-current@freebsd.org
Subject:   Sandbox for rpc services?
Message-ID:   <9905251526.aa27225@salmon.maths.tcd.ie>

index | next in thread | raw e-mail

Since identd and talk have been sandboxed in -current I was wondering if
rpc services could also be sandboxed, or is there something which says
they have to run as root. I'm guessing, but it might be possible to run
the following services with the following privilege.

	rstatd		kmem
	rusersd		nobody
	walld		tty
	pcnfsd		root
	rquotad		root
	sprayd		nobody
	lockd		root
	statd		?
	nfsd		root
	nfsiod		root

Has anyone thought about this? Is it a dead end, or should I try to find
out if it works?

	David.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-current" in the body of the message



home | help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?9905251526.aa27225>