How about having: * NET_ACCESS_LOCAL: Allow binding to ::1 * NET_ACCESS_EXTERNAL: Allow binding to addresses other than ::1
This would allow restricting processes to just internal or just external network communications. Paul -- This message posted from opensolaris.org