> > Someone that compromised ntpd could use it to gain root? > And a compromised ntpd right now gives you what? The exact same thing? :-) The idea of /dev/clock is to get rid of this kind of problem. If we are sure that non root users cannot set the clock backward using /dev/clock, is it okay? -- Emmanuel Dreyfus. manu@netbsd.org