Ian Collins wrote:

>> I've tested with Samba in a zone - it works fine, but the
>> default zone config suppresses the ability to grant the
>> SYS_SMB privilege to processes in a zone.  This is fixable
>> by modifying the zone config (adding sys_smb to the
>> 'limitpriv' property in the zone).

> What impact does this (SYS_SMB privilege) have on the zone when running
> Samba?

Only processes with the SYS_SMB priv can listen on the
SMB/CIFS port 137.  A process in a zone can't be granted
the process unless the zone has been configured to permit
that via 'limitpriv'.

Rob T
_______________________________________________
cifs-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/cifs-discuss

Reply via email to