docs/84453: bsd_seeotheruids root user exempt from policy

Robert Watson rwatson at FreeBSD.org
Wed Aug 3 09:28:17 UTC 2005


Synopsis: bsd_seeotheruids root user exempt from policy

Responsible-Changed-From-To: freebsd-doc->rwatson
Responsible-Changed-By: rwatson
Responsible-Changed-When: Wed Aug 3 09:18:14 GMT 2005
Responsible-Changed-Why: 
Grab ownership of this PR.  This appears to be a case of out-of-sync
documentation: mac_seeotheruids was changed to exempt the root user
in change mac_seeotheruids.c:1.7, associated with PR 72238, which
observed that while restricting the root user is technically
feasible, it doesn't match common administrative models where
restricting inter-user interactions is desirable.  I.e., the root
user now remains privileged with respect to this security model.


http://www.freebsd.org/cgi/query-pr.cgi?pr=84453



More information about the freebsd-doc mailing list