[rsbac] How does the faked root work?

Praise praisetazio at tiscalinet.it
Thu Jun 23 00:38:34 CEST 2005


I am using a 2.6.11 kernel with rsbac 1.2.4 on a gentoo system. My target is 
to make the root user act as a normal user, and I have moved all his CAP 
rights to another user.
However some programs have the dumb "uid 0" check in their code.
One is the script which start services. Another one is portage. Another one is 
iptraf.

I have this option set up:
zgrep FAKE /proc/config.gz
CONFIG_RSBAC_FAKE_ROOT_UID=y

Stracing iptraf, I can see this line:
getuid32()                              = 402

Am I misunderstanding how that option work?

Praise



More information about the rsbac mailing list