|
NAMEmac_ntpd —
policy allowing ntpd to run as non-root user
SYNOPSISTo compile the ntpd policy into your kernel, place the following lines in your kernel configuration file:options MAC
options MAC_NTPD Alternately, to load the ntpd policy module at boot time, place the following line in your kernel configuration file: options MAC and in loader.conf(5): mac_ntpd_load="YES" DESCRIPTIONThemac_ntpd policy grants any process running as user
‘ntpd’ (uid 123) the privileges needed to manipulate system
time, and to (re-)bind to the privileged NTP port.
When
ntpd(8)
is started with ‘ With the Privileges GrantedThe exact set of kernel privileges granted to any process running with the configured uid is:Runtime ConfigurationThe following sysctl(8) MIBs are available for fine-tuning this MAC policy. All sysctl(8) variables can also be set as loader(8) tunables in loader.conf(5).
SEE ALSOmac(4), ntpd(8)HISTORYMAC first appeared in FreeBSD 5.0 andmac_ntpd first appeared in FreeBSD
12.0.
Visit the GSP FreeBSD Man Page Interface. |