Little patch to mac_portacl(4)

Robert Watson rwatson at FreeBSD.org
Mon Oct 9 14:20:27 PDT 2006


On Mon, 9 Oct 2006, Michal Mertl wrote:

> I have just found out that mac_portacl breaks root binding of low ports in a 
> jail.
>
> I think that root in a jail should be allowed to bind to protected ports. 
> Alternatively it can be easily made optional.
>
> What do you think?
>
> One-line patch attached.

Yes, this is a good patch.  In fact, I believe I have the same (or at least, a 
similar) fix in my outstanding priv(9) patch.  I'll commit this tomorrow, 
thanks!

Robert N M Watson
Computer Laboratory
University of Cambridge


More information about the freebsd-current mailing list