Since identd and talk have been sandboxed in -current I was wondering if rpc services could also be sandboxed, or is there something which says they have to run as root. I'm guessing, but it might be possible to run the following services with the following privilege.
rstatd kmem rusersd nobody walld tty pcnfsd root rquotad root sprayd nobody lockd root statd ? nfsd root nfsiod root Has anyone thought about this? Is it a dead end, or should I try to find out if it works? David. To Unsubscribe: send mail to majord...@freebsd.org with "unsubscribe freebsd-current" in the body of the message