On 3/23/08, Ciaran McCreesh <[EMAIL PROTECTED]> wrote: > On Sun, 23 Mar 2008 20:21:29 +0200 > "Alon Bar-Lev" <[EMAIL PROTECTED]> wrote: > > linux-2.6.24 supports file based capabilities via: > > CONFIG_SECURITY_FILE_CAPABILITIES > > > > > This will provide more secured installation for users with a little > > effort, less usage of root user. > > > > What do you think? > > > Needs package manager support. Effectively this requires an EAPI bump, > since ebuilds need to know whether they can rely upon caps being > preserved across a merge or whether they have to degrade to a setuid > bit.
Why? A simple USE flag should be enough, if set use caps, if not use current. Alon. -- gentoo-dev@lists.gentoo.org mailing list