Nergal Dimitri writes:
> As some system calls cannot be used within a zone (or parts of them), like
> creating a raw socket. Is there a way for the global system administrator to
> let a process create e.g raw socket within a zone and bypass the privilege
> rules?
Yes. See zonecfg(1M), and the
As some system calls cannot be used within a zone (or parts of them), like
creating a raw socket. Is there a way for the global system administrator to
let a process create e.g raw socket within a zone and bypass the privilege
rules?
Cheers,
Nergal
This message posted from opensolaris.org
_