Subject: Re: finer grained IPNOPRIVPORTing
To: Michael S. <zyp@charm.at>
From: Daniel Carosone <dan@geek.com.au>
List: tech-kern
Date: 05/25/2005 08:57:36
--D2wrJPg6GMF/6GgX
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
On Wed, May 25, 2005 at 12:47:15AM +0200, Michael S. wrote:
> I was thinking about privileged ports could be bound depending on having
> entries in a file (e.g. /etc/privports) with application name and port
> number it is allowed do bind without beeing root.=20
systrace already supports this, and much more.
--
Dan.
--D2wrJPg6GMF/6GgX
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (NetBSD)
iD8DBQFCk7FgEAVxvV4N66cRAiZ1AKCqUqKHbftZ1Wx6FxY76ve0oqvJiwCg2dbr
zGP5IuyNO/lTJPtu+2eock0=
=/xN+
-----END PGP SIGNATURE-----
--D2wrJPg6GMF/6GgX--