Re: [PATCH] 2.6.25: access permission filesystem 0.21

!MAILaRCHIVE_VOTE_RePLACE
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: Olaf Dietsche <olaf+list.linux-kernel@...>, <linux-kernel@...>
Date: Monday, May 12, 2008 - 6:06 pm

--- Olaf Dietsche <olaf+list.linux-kernel@olafdietsche.de> wrote:


Hmm. The primary purpose of the capability mechanism, according
to the POSIX P1003.1e/2c working group*, is to separate the
privilege mechanism from the userid mechanism. You are now
reintegrating them two mechanims, albiet differently than
they were integrated before. You can already achieve this end
using filesystem based capabilties and mode bits and/or ACLs,
so why the change?


Woof. As reasonable as mode bits on ports seems, there's an
awful lot of tradition associated with the privileged port
model. I can see the value in it, I've actually implemented
it in the past in the Unix world, but I have never seen anyone
willing to take advantage of the scheme. 


-----
* As I'm the only member of that working group who ever pipes
  up here, you'll have to take my word for it. (smiley)


Casey Schaufler
casey@schaufler-ca.com
--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
[PATCH] 2.6.25: access permission filesystem 0.21, Olaf Dietsche, (Mon May 12, 4:59 pm)
Re: [PATCH] 2.6.25: access permission filesystem 0.21, Randy Dunlap, (Fri May 16, 7:11 pm)
Re: [PATCH] 2.6.25: access permission filesystem 0.21, Casey Schaufler, (Mon May 12, 6:06 pm)