Trusted Solaris Developer's Guide

New Process Privilege Sets

After the exec(2) system call, the process sets are as follows.


execfile Allowed = file_mac_write,proc_setid
execfile Forced = file_mac_write
Exec'd Inheritable = proc_setid
Exec'd Saved = proc_setid
Exec'd Permitted = file_mac_write,proc_setid
Exec'd Effective = file_mac_write,proc_setid