Subject: kern/35004: Could an MI aperture driver be added to the web site's list of contrib projects?
To: None <kern-bug-people@netbsd.org, gnats-admin@netbsd.org,>
From: None <blair.sadewitz@gmail.com>
List: netbsd-bugs
Date: 11/07/2006 03:10:01
>Number: 35004
>Category: kern
>Synopsis: Could an MI aperture driver be added to the web site's list of contrib projects?
>Confidential: no
>Severity: non-critical
>Priority: medium
>Responsible: kern-bug-people
>State: open
>Class: support
>Submitter-Id: net
>Arrival-Date: Tue Nov 07 03:10:01 +0000 2006
>Originator: Blair Sadewitz
>Release: amd64 -current (4.99.3)
>Organization:
>Environment:
NetBSD woody 4.99.3 NetBSD 4.99.3 (WOODY) #1: Sun Nov 5 16:04:04 EST 2006 blair@woody:/u/src/sys/arch/amd64/compile/WOODY amd64
>Description:
OpenBSD has a kernelized aperture to avoid having to run a suid X server on i386, amd64, cats, and other ports. While I am undoubtedly not qualified to write this (or port OpenBSD's driver, whichever is easier), perhaps someone else out there would like to take this up. While I realize that an apeture driver does not eliminate all security problems, it sure would be nice to be able to run securelevel 1 and X simultaneously. Thus, I propose that this be mentioned in www/contrib/projects.html.
>How-To-Repeat:
>Fix: