> > So maybe we should split that capability and have CAP_SYS_RAW_GRAPHICS?
>
> Indeed. Unfortunately, that requires distinguishing between direct access
> to the video card(s?) and all the other hardware; there IS a patch out
> there which can do this using PCI resource allocations with, apparently,
> reasonable success. It's not in yet, but it would fit the bill. Maybe for
> 2.5?
many graphics cards can write to main memory thus you cannot make this a
seperate security domain
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/
This archive was generated by hypermail 2b29 : Mon Jul 31 2000 - 21:00:22 EST