cvs commit: src/sys/kern kern_prot.c
rwatson at FreeBSD.org
Sun Sep 14 10:09:54 PDT 2003
On Sun, 14 Sep 2003, Dag-Erling Smørgrav wrote:
> Robert Watson <rwatson at FreeBSD.org> writes:
> > That said, to be frank, no, I'm not sure I want to do this. But I also
> > want to make sure we don't break important applications.
> What about important applications that rely on the fact that
> unprivileged users can't send SIGALRM to privileged processes? That
> used to be the case for ping(8) (though I don't think it is any more),
> and there may be others. Shouldn't we err on the side of caution?
Well, until 5.x, this limit didn't exist, so right now I think this is
still a question of "how conservative to we want to be relative to the
status quo". I agree in principle, but we should get the Diablo port
(software?) fixed first.
Robert N M Watson FreeBSD Core Team, TrustedBSD Projects
robert at fledge.watson.org Network Associates Laboratories
More information about the cvs-src