Fedora 11: moving to posix file capabilities?

seth vidal skvidal at fedoraproject.org
Wed Oct 29 12:08:02 UTC 2008


On Wed, 2008-10-29 at 12:37 +0200, Panu Matilainen wrote:
> Hate to interrupt the tty1 vs tty7 debate but...
> 
> We have kernel support for storing capabilities on filesystem since 2.6.24 
> and recent libcap, both in F9 already. I just committed file capability 
> support to rpm.org HEAD, filling in the final(?) missing piece. 
> Capability support is not going to be in rpm 4.6.0 but no reason they 
> can't be pulled into 4.6.1 which is easily in F11 timeframe.
> 
> Are we ready to start considering moving away from SUID bits to 
> capabilities, in Fedora 11 maybe?

How does that mesh with networked file systems (nfs, samba)?

-sv





More information about the fedora-devel-list mailing list