Re: 2.5.74-mm1

Alex Riesen (alexander.riesen@synopsys.COM)
Mon, 7 Jul 2003 15:09:05 +0200


Daniel Phillips, Mon, Jul 07, 2003 14:24:06 +0200:
> > Alternatively, how about using PAM to grant the CAP_SYS_NICE capability to
> > known interactive users that require it. Presumably the number of users
> > that require it is very small (in the case of the music player, only one)
> > so it wouldn't be a major security issue.
>
> And set up distros to grant it by default. Yes.
>
> The problem I see is that it lets user space priorities invade the range of
> priorities used by root processes. What's really needed is a range of
> negative priorities available to normal users that are not normally used by
> root.
>
> In retrospect, the idea of renicing all the applications but the
> realtime one doesn't work, because it doesn't take care of
> applications started afterwards.
>

start login niced to -X ?

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/