On 05/ 3/11 04:07 PM, Danek Duvall wrote:
Brock Pytlik wrote:

Oh, I almost forgot. zoneproxy-cllient does need to start as root.
It drops privs as soon as it can.
Is this because it needs to listen on a port<  1024?  If that's the case,
can't we just have the service specify the necessary privilege?

Danek
This code has been reviewed by Ed previously and it was agreed that the current approach was sufficient. Neither K nor I believe it's worth the time and effort to further refine this before this wad lands. If someone feels strongly about it, it can be addressed in a bug fix.

Brock
_______________________________________________
pkg-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/pkg-discuss

Reply via email to