Subject: Re: kern.showallprocs implementation
To: Bill Studenmund <email@example.com>
From: Hubert Feyrer <firstname.lastname@example.org>
Date: 08/30/2005 20:20:43
On Tue, 30 Aug 2005, Bill Studenmund wrote:
> Well, what other suggestions do we have?
Open up a seperate namespace?
It seems Solaris did that, skimming through privileges(5) and rbac(5).
Of course a "full" implementation would also have all this on a
per-process basis, not global. So that you can e.g. restrict only
processes in one chroot.