hughsient at gmail.com
Tue Mar 14 00:31:02 PST 2006
On Tue, 2006-03-14 at 02:10 -0500, David Zeuthen wrote:
> - Move all queries by libpolkit to ask polkitd instead of looking in
> configuration files
> - Need this because we may not want to expose to any user what
> privileges other users have
Sweet, I'll try this out today.
> 7. Factor out auth code in polkit-is-privileged into a GObject and put
> it in a libpolkit-gobject library (since the interaction is pretty
> hairy (see interaction diagram in polkitd/polkit-session.c) I will
> not put this in libpolkit as I want to use the glib bindings and
> these require the glib main loop => not suitable for Qt etc.)
I thought more and more stuff was using the glib main loop for qt?
> Notably implementing 2. and 3. enables us to solve the problem that I
> mentioned here http://blog.fubar.dk/?p=63 - the login manager (e.g. gdm)
> will simply grant the user the temporary privilege desktop-console on
> the resource xserver://:0.0 when a user logs in. Then a privileged
> process ServiceKit (!) will listen for this and manage the life cycle of
> policy daemons such as g-p-m, nm-applet and so forth.
Yay! Keep rocking!
More information about the hal