6955 libproc should be documented and shipped6956 libproc cannot leave free() to callersReviewed by: Ryan Zezeski <ryan@zinascii.com>Reviewed by: Cody Mello <cody.mello@joyent.com>Reviewed by: Jo
6955 libproc should be documented and shipped6956 libproc cannot leave free() to callersReviewed by: Ryan Zezeski <ryan@zinascii.com>Reviewed by: Cody Mello <cody.mello@joyent.com>Reviewed by: Joshua M. Clulow <josh@sysmgr.org>Approved by: Richard Lowe <richlowe@richlowe.net>
show more ...
3946 ::gcoreReviewed by: Adam Leventhal <ahl@delphix.com>Reviewed by: Matthew Ahrens <mahrens@delphix.com>Approved by: Robert Mustacchi <rm@joyent.com>
PSARC 2009/377 In-kernel pfexec implementation.PSARC 2009/378 Basic File PrivilegesPSARC 2010/072 RBAC update: user attrs from profiles4912090 pfzsh(1) should exist4912093 pfbash(1) should exist
PSARC 2009/377 In-kernel pfexec implementation.PSARC 2009/378 Basic File PrivilegesPSARC 2010/072 RBAC update: user attrs from profiles4912090 pfzsh(1) should exist4912093 pfbash(1) should exist4912096 pftcsh(1) should exist6440298 Expand the basic privilege set in order to restrict file access6859862 Move pfexec into the kernel6919171 cred_t sidesteps kmem_debug; we need to be able to detect bad hold/free when they occur6923721 The new SYS_SMB privilege is not backward compatible6937562 autofs doesn't remove its door when the zone shuts down6937727 Zones stuck on deathrow; netstack_zone keeps a credential reference to the zone6940159 Implement PSARC 2010/072
PSARC 2007/072 PRIV_AWARE_RESET6452447 Need the ability to limit each and every privilege on login
PSARC 2008/109 Fine Grained Access Permissions (FGAP)6664443 Implement PSARC/2008/109
6208005 /usr/bin/ppriv -v -l outputs wrong strings if locale is UTF-8.6450300 ppriv -lv should output English description if the privilege name is missing from L10n file.
4916205 libcmd should not use file operation routines from C library6234782 Kerberos and GSSAPI should not use fopen6259671 vold won't be killed by TERM signal when several removable devices are ma
4916205 libcmd should not use file operation routines from C library6234782 Kerberos and GSSAPI should not use fopen6259671 vold won't be killed by TERM signal when several removable devices are managed6386770 pam_authenticate can fail if open files are >= 255 and the soft fd limit is greater than 2566414401 Remove shadow stdio implementation obsoleted by PSARC 2006/1626414404 __rpc_openchild never called and not exported by library6416815 ON needs to be hardened against the 32-bit fopen/255 problem--HG--rename : usr/src/lib/libnsl/common/nsl_stdio_prv.c => deleted_files/usr/src/lib/libnsl/common/nsl_stdio_prv.crename : usr/src/lib/libnsl/include/nsl_stdio_prv.h => deleted_files/usr/src/lib/libnsl/include/nsl_stdio_prv.hrename : usr/src/lib/libnsl/rpc/openchild.c => deleted_files/usr/src/lib/libnsl/rpc/openchild.crename : usr/src/lib/libnsl/rpc/xdr_stdio_prv.c => deleted_files/usr/src/lib/libnsl/rpc/xdr_stdio_prv.crename : usr/src/lib/libresolv2/req.flg => deleted_files/usr/src/lib/libresolv2/req.flgrename : usr/src/lib/nsswitch/compat/req.flg => deleted_files/usr/src/lib/nsswitch/compat/req.flgrename : usr/src/lib/nsswitch/files/req.flg => deleted_files/usr/src/lib/nsswitch/files/req.flgrename : usr/src/lib/nsswitch/req.flg => deleted_files/usr/src/lib/nsswitch/req.flgrename : usr/src/lib/nsswitch/user/req.flg => deleted_files/usr/src/lib/nsswitch/user/req.flg
PSARC/2002/762 Layered Trusted SolarisPSARC/2005/060 TSNET: Trusted Networking with Security LabelsPSARC/2005/259 Layered Trusted Solaris Label InterfacesPSARC/2005/573 Solaris Trusted Extensions
PSARC/2002/762 Layered Trusted SolarisPSARC/2005/060 TSNET: Trusted Networking with Security LabelsPSARC/2005/259 Layered Trusted Solaris Label InterfacesPSARC/2005/573 Solaris Trusted Extensions for PrintingPSARC/2005/691 Trusted Extensions for Device AllocationPSARC/2005/723 Solaris Trusted Extensions Filesystem LabelingPSARC/2006/009 Labeled AuditingPSARC/2006/155 Trusted Extensions RBAC ChangesPSARC/2006/191 is_system_labeled6293271 Zone processes should use zone_kcred instead of kcred6394554 integrate Solaris Trusted Extensions--HG--rename : usr/src/cmd/dminfo/Makefile => deleted_files/usr/src/cmd/dminfo/Makefilerename : usr/src/cmd/dminfo/dminfo.c => usr/src/cmd/allocate/dminfo.c
OpenSolaris Launch