Subject: Re: Getting rid of /dev/veriexec
To: Nathan J. Williams <>
From: Steven M. Bellovin <>
List: tech-kern
Date: 12/02/2005 09:42:09
In message <>, "Nathan J. Willia
ms" writes:
>Elad Efrat <> writes:
>> We use sysctl(3) outside sysctl(8) a lot. Recent examples: using sysctl
>> for reading inet/inet6/local PCBs and protocol statistics instead of
>> using /dev/kmem; rpaulo@ even made trpt/trsp use sysctl, which means we
>> don't have to give them the sgid kmem bit anymore.
>I object to those, too.

I don't -- cleaning up kmem grovelers is a good idea.  Sysctl may not 
be the best mechanism, but it's far from the worst.

		--Steven M. Bellovin,