Subject: ACLs (was: [lists@globalintersec.com: [Global InterSec 2002041701] Sudo Password Prompt Vulnerability.] )
To: None <tech-security@netbsd.org>
From: Jan Schaumann <jschauma@netbsd.org>
List: tech-security
Date: 04/26/2002 09:33:35
Thor Lancelot Simon <tls@rek.tjls.com> wrote:

> If you want to let a user run one
> particular binary as root, copy it and use group permissions (or ACLs
> if your chosen Unix allows that; sadly NetBSD does not).

What is the general notion on ACLs around here?  I'm still looking for a
suitable CS Thesis topic/implementation-task, and had pondered the idea
of ACLs.  Is that too complex a task to cover in, say, 4 months
part-time work, or would it not be wanted to begin with?

Obviously, I haven't put much research into this (yet), but I'd
appreciate your feedback...

-Jan