Solaris 11 has a new feature called Forced Privileges which allows for a specific set of privileges to be assigned when a given program is run. This makes some setuid binaries more safe and they are no longer really setuid in the traditional sense. There is an excellent
blog entry by Darren who explains it in a little bit more detail.
No comments:
Post a Comment