Final (hopefully) privilege escalation policy draft

Till Maas opensource at till.name
Thu Feb 11 15:16:38 UTC 2010


On Wed, Feb 10, 2010 at 12:48:39PM -0800, Adam Williamson wrote:

> I have now adjusted the draft -
> https://fedoraproject.org/wiki/User:Adamwill/Draft_Fedora_privilege_escalation_policy - to reflect all feedback from this list and from FESco. It will be reviewed again by FESco next week. Please raise any potential issues or further suggestions for adjustments before then. Of course, even if the policy is accepted by FESCo it will not be set in stone and changes and exceptions can be added in future as appropriate, but I'd like to have it as good as possible at first :) thanks all!

I added /dev/shm to the list of directories a user may write to. I
believe there was also an item about writing to user mounted
file systems, e.g. if a usb device is mounted at /media/disk, but it
seems to be gone.

Regards
Till
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 836 bytes
Desc: not available
Url : http://lists.fedoraproject.org/pipermail/devel/attachments/20100211/b41631fe/attachment.bin 


More information about the devel mailing list