Subject: Re: finer grained IPNOPRIVPORTing
To: Michael S. <zyp@charm.at>
From: Daniel Carosone <dan@geek.com.au>
List: tech-kern
Date: 05/25/2005 08:57:36
--D2wrJPg6GMF/6GgX
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Wed, May 25, 2005 at 12:47:15AM +0200, Michael S. wrote:
> I was thinking about privileged ports could be bound depending on having
> entries in a file (e.g. /etc/privports) with application name and port
> number it is allowed do bind without beeing root.=20

systrace already supports this, and much more.

--
Dan.

--D2wrJPg6GMF/6GgX
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (NetBSD)

iD8DBQFCk7FgEAVxvV4N66cRAiZ1AKCqUqKHbftZ1Wx6FxY76ve0oqvJiwCg2dbr
zGP5IuyNO/lTJPtu+2eock0=
=/xN+
-----END PGP SIGNATURE-----

--D2wrJPg6GMF/6GgX--