On Thu, Mar 14, 2013 at 09:08:48AM -0400, Daniel J Walsh wrote: > Well I believe Ubunto has been using this feature for years and maybe we > should consider turning it on via systemd or a unit file. The breakage of AFD > is not a legitimate reason for Fedora to turn it off. Why not add an LSM call, security_follow_restricted_link()? Then you could ship this protection with SELinux policy, and even turn it off per-label if specific applications need the old behavior. --CJD -- devel mailing list devel@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/devel