> > > 1. Put capabilities information in the executable header.
> > > 2. Mark the executable setuid root.
> > > 3. Have the kernel check for #1 if #2, and prefer #1 if present.
> Old security scripts program has root privileges. It is wrong, it has
> only subset. But it is wrong _the right way_. Old scripts still see
> the "bad scenario".
> It is no-loose situation.
It's a no-lose situation until you start using the new features to add
privileges which weren't there in the first place.
Matthew.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/