On 3/23/08, Ciaran McCreesh <[EMAIL PROTECTED]> wrote:
> On Sun, 23 Mar 2008 20:21:29 +0200
>  "Alon Bar-Lev" <[EMAIL PROTECTED]> wrote:
>  > linux-2.6.24 supports file based capabilities via:
>  > CONFIG_SECURITY_FILE_CAPABILITIES
>  >
>
> > This will provide more secured installation for users with a little
>  > effort, less usage of root user.
>  >
>  > What do you think?
>
>
> Needs package manager support. Effectively this requires an EAPI bump,
>  since ebuilds need to know whether they can rely upon caps being
>  preserved across a merge or whether they have to degrade to a setuid
>  bit.

Why? A simple USE flag should be enough, if set use caps, if not use current.

Alon.
-- 
gentoo-dev@lists.gentoo.org mailing list

Reply via email to