On Fri, Jul 10, 2009 at 03:27:32PM +0200, olafbuddenha...@gmx.net wrote:
> On Sat, Jul 04, 2009 at 04:05:52PM +0000, Carl Fredrik Hammar wrote:
> 
> > firmlink opens its target file with any client specified open flags,
> > except O_CREAT.  This makes it is possible for a client to read or
> > write to the target of a firmlink using the firmlink's authority
> > (io_restrict_auth is not enough).
> 
> This could be considered a feature in some situations :-)

It definetly shouldn't be the default though.  :-)

Regards,
  Fredrik


Reply via email to