On Thu, 2010-05-27 at 08:23 -0700, Adam Williamson wrote: > The relevant bit here is the last sentence, which was intended to cover > the whole desktop_admin_r stuff. Let me know if it's factually off. Seeing as desktop_admin_r is actually part of the default spin, can we add some text which explicitly exempts users in that group from the privilege escalation policy? In other words, can we say something along the lines of "it's fine for the default spin to ship policykit files allowing desktop_admin_r users to do stuff without passwords being required"? Tim. */
Attachment:
signature.asc
Description: This is a digitally signed message part
-- devel mailing list devel@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/devel