Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 30 Mar 2005 11:27:36 -0800
From:      Aaron Glenn <aaron.glenn@gmail.com>
To:        freebsd-hackers@freebsd.org
Subject:   Re: A few thoughts..
Message-ID:  <18f6019405033011277d9443a7@mail.gmail.com>
In-Reply-To: <63519.81.84.174.37.1112202413.squirrel@mail.revolutionsp.com>
References:  <61910.81.84.174.37.1112123946.squirrel@mail.revolutionsp.com> <20050329213528.59dab2e2.flynn@energyhq.es.eu.org> <62208.81.84.174.37.1112130745.squirrel@mail.revolutionsp.com> <20050329193558.L33759@eleanor.us1.wmi.uvac.net> <63511.81.84.174.37.1112202327.squirrel@mail.revolutionsp.com> <63519.81.84.174.37.1112202413.squirrel@mail.revolutionsp.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, 30 Mar 2005 11:06:53 -0600 (CST), H. S.
<security@revolutionsp.com> wrote:
> As I stated previously, I'm not much of a C programmer, but I can do some
> coding. I've been thinking into changing the core of the system a bit to
> return errors if some information is accessed by a normal user. I'd like
> to know if getuid() would work that deep in the system? And how can I
> register sysctl mibs in the kernel ?

Let me chime in with A single thought of my own: isn't this scenario a
textbook use-case for the hard work Robert Watson did with MAC? I
haven't kept up with 5.x's latest features in a while...

aaron.glenn



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?18f6019405033011277d9443a7>