Wireshark-dev: Re: [Wireshark-dev] GSoC 2013 Project Proposal for Root permissions in wireshark
From: Mohana Sai <[email protected]>
Date: Thu, 2 May 2013 08:47:56 -0700
While using privilege separation on linux systems,we can make the dumpcap an IPC service configured to run as root or system-started daemon running as root, the dumpcap can receive commands via IPC channels and will be held responsible for ensuring only right users are allowed to perform the command. Polkit in linux (authorization services in OS X) can help by making it configurable to who is authorized to perform a specific action (and implementing some policy for it).

MohanaSai Cherukuri