Ok, thanks Gary.
BTW, I'm all for sandboxing, it's the only way to securely run user-space apps on a multi-user system. We've been trying to achieve a similar outcome for many years with chroot and RBAC (such as SELINUX) on Linux systems.
Cheers
Steffen.
|