[cap-talk] capability networks compared with ACL networks?

Bill Frantz frantz at pwpconsult.com
Sat Feb 7 00:28:48 EST 2009


john.carlson3 at sbcglobal.net (John Carlson) on Thursday, February 5, 2009 wrote:

>Don't forget access to network ports--perhaps a mixture between a file  
>and an active entity.
>In particular, I am thinking of bind, where a port is bound to an  
>active entity.  I only know
>Berkeley and Unix sockets, ideas from other networks would be  
>interesting.

Indeed ports and the ability to build network connections are important
items to control at a fine grain. Perhaps Neil Brown's model could be
extended if there was some file system piece that could be placed in a
directory and provide the permission either to bind to and listen on a
port, or build a connection to some, possibly limited, destination(s).

Cheer - Bill

-------------------------------------------------------------------------
Bill Frantz        | When it comes to the world     | Periwinkle
(408)356-8506      | around us, is there any choice | 16345 Englewood Ave
www.pwpconsult.com | but to explore? - Lisa Randall | Los Gatos, CA 95032


More information about the cap-talk mailing list