Look at the delegable properties (zfs allow). For example, you can delegate a user to have
specific privileges and then not allow them to destroy.

Note: I'm only 99% sure this is implemented in FreeBSD, hopefully someone can verify.
 -- richard

Hi Richard!

I think it's implemented but I have never used.
I hope this feature can "protect zfs before markus aka root" :-)))

