tech-kern archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

re: RFC: New security model secmodel_securechroot(9)



> >      ·   Setting the process resource limits is not allowed.
> 
> Lowering should still be possible.

i'm not sure the point of this one, really.  if this configuration
is desired, then set rlimit max == cur to whatever you want before
starting the chroot.  ie, this can be done already with existing
mechanisms.


.mrg.


Home | Main Index | Thread Index | Old Index