On Fri, 09 Dec 2005 18:29:22 +0100 "Spider (D.m.D. Lj.)" wrote: > On Fri, 2005-12-09 at 18:21 +0100, Jesús García Crespo wrote: > > Hi! I thought that GCC could means a risk if all of the users of my > > system are able to run it! I talked this with a friend and he > > propossed to create a new group, "compiler", for example, where all > > the users who will be able to run gcc must belong to it! > > > > Wouldn't be interesting to implement this into Gentoo gcc ebuild as > > an USE? > > > Exactly what risk is there from an end-user running a compiler? A > compiler doesn't access any kind of restricted environment, doesn't > auytomatically create binaries with other rights than its own and is > about as "safe" a product as there can be. I meant something like: for (;;) malloc(1000); > If you're really paranoid about execution and so on, start reading the > SELinux FAQ and create a ruleset.. The default one is probably more > lenient than you want it ;) Yes, I understand. I will read about it. Thanks a lot! -- Jesús García Crespo (aka Sevein) http://www.sevein.com correo@sevein.com GnuPG key ID: E2DB17E8 (pgp.escomposlinux.org)