Look at the delegable properties (zfs allow). For example, you can
delegate a user to have
specific privileges and then not allow them to destroy.
Note: I'm only 99% sure this is implemented in FreeBSD, hopefully
someone can verify.
I think it's implemented but I have never used.
I hope this feature can "protect zfs before markus aka root" :-)))
zfs-discuss mailing list