Re: [PATCH] Capabilities, this time in elf section

Jonathan Walther (krooger@debian.org)
Fri, 9 Apr 1999 19:28:37 -0700 (PDT)


On Fri, 9 Apr 1999, Daniel Taylor wrote:
> Exactly.
> Non-SUID binary, & capabilities with user,
> SUID binary, own capabilities.

I disagree. if you suid to some other user, then they become the effective
user, so the effective capabilities should become and & of THAT users
capabilities and the binaries capabilities, and not those of the invoker.

Doesn't anyone believe in the principle of least astonishment? :-(

Jonathan Walther
Digital Video Broadcasting Systems
http://216.100.231.12 (requires netscape)

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/