> 
> in your case, however, a simple scheme might have the kernel (or just a 
> device) accept a ctl request that added
> or removed a user name from a local group table, and then system start up 
> script(s) would load the table from some agreed source
> (and presumably one that's adequately reliable).  i think something like that 
> was mentioned,
> if not discussed, many months ago on the list.
> 

without any agreed-upon or secure arbiter of groups which tracks centralized
information, this does not seem like a good idea to me.

i apologize if this has been discussed before.

- erik

Reply via email to