When a zone is booted, a default set of safe privileges is included in the configuration. These privileges are considered safe because they prevent a privileged process in the zone from affecting processes in other non-global zones on the system or in the global zone. You can use the zonecfg command to do the following:
Add to the default set of privileges, understanding that such changes might allow processes in one zone to affect processes in other zones by being able to control a global resource.
Remove from the default set of privileges, understanding that such changes might prevent some processes from operating correctly if they require those privileges to run.
For more information, review the following:
Privileges in a Non-Global Zone in Creating and Using Oracle Solaris Zones
How to Create and Deploy a Non-Global Zone in Creating and Using Oracle Solaris Zones
privileges(7) man page