Since identd and talk have been sandboxed in -current I was wondering if
rpc services could also be sandboxed, or is there something which says
they have to run as root. I'm guessing, but it might be possible to run
the following services with the following privilege.

        rstatd          kmem
        rusersd         nobody
        walld           tty
        pcnfsd          root
        rquotad         root
        sprayd          nobody
        lockd           root
        statd           ?
        nfsd            root
        nfsiod          root

Has anyone thought about this? Is it a dead end, or should I try to find
out if it works?

        David.


To Unsubscribe: send mail to majord...@freebsd.org
with "unsubscribe freebsd-current" in the body of the message

Reply via email to