PERFORCE change 164722 for review

Jonathan Anderson jona at FreeBSD.org
Fri Jun 19 17:26:51 UTC 2009


http://perforce.freebsd.org/chv.cgi?CH=164722

Change 164722 by jona at jona-trustedbsd-kentvm on 2009/06/19 17:26:41

	Allow sandboxed processes to read kern (required for libthr)

Affected files ...

.. //depot/projects/trustedbsd/capabilities/src/sys/kern/kern_mib.c#10 edit

Differences ...

==== //depot/projects/trustedbsd/capabilities/src/sys/kern/kern_mib.c#10 (text+ko) ====

@@ -57,7 +57,7 @@
 
 SYSCTL_NODE(, 0,	  sysctl, CTLFLAG_RW, 0,
 	"Sysctl internal magic");
-SYSCTL_NODE(, CTL_KERN,	  kern,   CTLFLAG_RW, 0,
+SYSCTL_NODE(, CTL_KERN,	  kern,   CTLFLAG_RW|CTLFLAG_CAPRD, 0,
 	"High kernel, proc, limits &c");
 SYSCTL_NODE(, CTL_VM,	  vm,     CTLFLAG_RW, 0,
 	"Virtual memory");


More information about the p4-projects mailing list