That thing scared me a bit and I have deleted the role since. I think even if
rbac meets password less login, it is insecure in the sense that anyone who
cracks devsk login, can become root. I want this role for local console logged
user only and only from local logon sessions. I think this will take some
effort to achieve.
$ /usr/bin/profiles -l
Web Console Management:
/usr/lib/webconsole/smcwebstart uid=noaccess, gid=noaccess,
privs=proc_audit
All:
*
This message posted from opensolaris.org
_______________________________________________
opensolaris-discuss mailing list
[email protected]