[cap-talk] More Heresey: ACLs not inherently bad

Mark Miller erights at gmail.com
Wed Sep 10 18:14:56 CDT 2008


On Wed, Sep 10, 2008 at 3:58 PM, Charles Landau <clandau at macslab.com> wrote:

>
> This isn't Horton, because the "new process" is free to delegate its
> capability without any involvement of the directory-like object.
>

That's true in Horton as well:

> Nothing forces Alice to share her rights in this indirect way;
> Alice's P1 *could* just give Bob direct access to S2. But then
> Carol would *necessarily* blame Alice for Bob's use of S2,
> which Alice might not like.

-- 
Text by me above is hereby placed in the public domain

Cheers,
--MarkM
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://www.eros-os.org/pipermail/cap-talk/attachments/20080910/8d205599/attachment.html 


More information about the cap-talk mailing list