[rsbac] RC, ACL models questions

Amon Ott ao at rsbac.org
Wed Apr 28 12:01:24 CEST 2004


On Mittwoch, 28. April 2004 11:46, Amon Ott wrote:
> On Mittwoch, 28. April 2004 12:03, sftf at yandex.ru wrote:
> >   2. How to do with RC, so that it is impossible to delete DIR, but
> >      FILEs and DIRs under it possible to delete, if this files/dirs 
MUST 
> inherit parent FD type ?
> >      (so parent DIR and all subDIRs and subFILEs all of one fd-type)
> 
> If they have the same type, there is no way to have different rights.

Well, you can define a compatible role with another def_fd_create_type and 
switch to that role before creating the other file. But that would be 
using two different roles.

Amon.
-- 
http://www.rsbac.org - GnuPG: 2048g/5DEAAA30 2002-10-22



More information about the rsbac mailing list