> > b) Same scenario as above, but word-substitute apache->kernel and > > mod_trojan->device driver. If the linux kernel ran in 'space 2', > > but device drivers ran in 'space 3', then nasties can't hurt > > the kernel, while still enjoying read-write access to the > > bus and other hardware that a legit device driver needs access > > to.
And we reinvent the Multics ring structure one more time.... dockmaster.af.mil, wherefore art thou? -- db
