>      Let me try again:  If running with uid == 0 (and no privs) is
 >      what is needed to operate correctly, then running with uid == 0
 >      (and no privs) is what is needed.  My preference would be running
 >      with uid == dladm (and no privs).

Got it.  From the prototype that Cathy just did, it seems that there are a
few issues to work through to ensure that shutdown can be done gracefully.
So at this time we'd like to stick with the current proposal of uid 0 and
minimal privileges.

--
meem

Reply via email to