How about having:
* NET_ACCESS_LOCAL: Allow binding to ::1
* NET_ACCESS_EXTERNAL: Allow binding to addresses other than ::1

This would allow restricting processes to just internal or just external 
network communications.

Paul
-- 
This message posted from opensolaris.org

Reply via email to