On Tue, 2012-10-09 at 20:17 +0200, Lennart Poettering wrote: > > Could we make that a default on Fedora in addition to adm? (I assume > this is > > polkit but can't see it offhand -- hmmm... looks to be hard-coded in > the > > source?) I don't really have a strong opinion about whether adm > should work > > or not, but wheel should. > > Well, we could of course add this as ACL, but I wonder if it wouldn't > be > nicer to declare that "adm" is for seeing, and "wheel" for doing as I > suggested above. > What's the point of 2 different groups ? We have filesystem permissions to determine what a user/group can do, plus we have selinux on top to enforce in a different way some of these policies. What does 2 different groups give you besides confusion ? Simo. -- Simo Sorce * Red Hat, Inc * New York -- devel mailing list devel@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/devel