Date: Wed, 10 Oct 2001 14:50:14 -0700 From: Peter Wemm <peter@wemm.org> To: Dag-Erling Smorgrav <des@ofug.org> Cc: Robert Watson <rwatson@FreeBSD.org>, cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org Subject: Re: cvs commit: src/sys/kern kern_proc.c kern_prot.c uipc_socket.c uipc_usrreq.c src/sys/netinet raw_ip.c tcp_subr.c udp_usrreq.c Message-ID: <20011010215014.A45993809@overcee.netplex.com.au> In-Reply-To: <xzp7ku3h6c8.fsf@flood.ping.uio.no>
next in thread | previous in thread | raw e-mail | index | archive | help
Dag-Erling Smorgrav wrote:
> Robert Watson <rwatson@FreeBSD.org> writes:
> > Log:
> > - Combine kern.ps_showallprocs and kern.ipc.showallsockets into
> > a single kern.security.seeotheruids_permitted, describes as:
> > "Unprivileged processes may see subjects/objects with different real ui
d"
>
> Would people mind a lot if this variable defaulted to 0?
I would object pretty loudly.
Personally, I think this is a candidate for proper security attributes down
the track when we have them. But for now I feel that the defaults should
stay the way they are right now.
Cheers,
-Peter
--
Peter Wemm - peter@FreeBSD.org; peter@yahoo-inc.com; peter@netplex.com.au
"All of this is for nothing if we don't go to the stars" - JMS/B5
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20011010215014.A45993809>
