mwac(7) 맨 페이지 - 윈디하나의 솔라나라

개요

섹션
맨 페이지 이름
검색(S)

mwac(7)

mwac(7) Standards, Environments, Macros, Character Sets, and miscellanymwac(7)

NAME
       mwac, MWAC - Mandatory Write Access Control

DESCRIPTION
       Mandatory  Write  Access  Control (MWAC) implements a new policy in the
       Oracle Solaris operating system that allows  for  fine-grained  control
       over the writability of objects on otherwise read-only file systems.


       In  the  current  instance  of the Oracle Solaris operating system, the
       kernel implements the MWAC policy for non-global and global zones  pre‐
       venting any overruling of the policy from within the zone.


       Zones  marked  as read-only have their root file system write-protected
       by MWAC. Only the file system objects  that  are  write-listed  by  the
       read-only-profile  are  writable. See zonecfg(8). Other file system ob‐
       jects are read-only.


       Creating links to objects that are read-only by virtue of the MWAC-pol‐
       icy is not allowed.


       Process with the PRIV_PROC_TPD flag set are exempt from  the  MWAC-pol‐
       icy.  Such  process can be created by using Trusted Path login or using
       the -T or -U option for zlogin.

SEE ALSO
       ln(1),  getpflags(2),   link(2),   pathconf(2),   tpd(7),   zoneadm(8),
       zonecfg(8)

Oracle Solaris 11.4               11 Dec 2020                          mwac(7)
맨 페이지 내용의 저작권은 맨 페이지 작성자에게 있습니다.
RSS ATOM XHTML 5 CSS3