On Sun, Jan 07, 2007 at 11:05:37AM -0700, George Sexton wrote:
>just be pure overhead. It would be simpler and more efficient to just 
>remove the requirement from the kernel, and run a custom kernel.

More efficient, probably, but simpler?  As someone who has tracked custom
kernels with my patches in them, I'm a skeptic.  This always seems to be a
big can of worms, particularly when the code you are patching changes.

You can probably do it with SELinux.  However, on one box I have running
it, I'm not getting SELinux alerts about it if I try to bind to <1024 as a

