On Friday 04 August 2006 10:00 am, Garrett D'Amore wrote:
> I've been thinking, it seems to me that it is inconvenient that root
> privilege is required to look at prom properties in the Solaris device
> tree.  I believe that the data located there is not security sensitive
> (at least not normally), as long as unauthorized users are not allowed
> to _modify_ those properties.

Security wise I might argue.

It gives an unsuspecting user the ability to determine which disk boots at 
minimum.

I'd like to hear from someone like Casper or Darren who work on the security 
team.

-- 

Alan DuBoff - Sun Microsystems
Solaris x86 Engineering - IHV/OEM Group


_______________________________________________
opensolaris-code mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/opensolaris-code

Reply via email to