> Independent of this specific use case, the architecture for changing the
> reboot mode is defective, if changing it temporarily for the next boot
> requires much more authorization than changing the persistent default.
> This is worth fixing independently of this case. Requiring every
> consumer of such functionality to have an agent that runs with privilege
> (ConsoleKit in your case) does not seem a good approach.
I have filed
6878412 Need service-based authorization support for adding
transient property groups
Feel free to add yourself to the interest list.
Sherry
--
Sherry Moore, Solaris Core Kernel http://blogs.sun.com/sherrym