On Thu, Feb 09, 2006 at 10:33:25PM +1100, Russell Coker wrote: > to do (and what presumably some module of Trusted Solaris still does) in > regard to the auid. In the SunOS case it was apparently impossible to reset > the auid, not even root can do so. Same with the luid on trusted Unix like old SCO. > Of course this gives the problem of what happens when you restart sshd or > crond, those programs would then be unable to set the auid. In Fedora we You ask a daemon to restart them. In the old days of course init managed it all off inittab so the problem didnt arise. > Of course then we have the issue of other programs such as mail servers which > perform actions on behalf of users but which should not be started from init. It is performing actions _for_ that user. They are if you like the "billable entity" -- fedora-devel-list mailing list fedora-devel-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-devel-list