> Independent of this specific use case, the architecture for changing the > reboot mode is defective, if changing it temporarily for the next boot > requires much more authorization than changing the persistent default. > This is worth fixing independently of this case. Requiring every > consumer of such functionality to have an agent that runs with privilege > (ConsoleKit in your case) does not seem a good approach.
I have filed 6878412 Need service-based authorization support for adding transient property groups Feel free to add yourself to the interest list. Sherry -- Sherry Moore, Solaris Core Kernel http://blogs.sun.com/sherrym