Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yep, that's basically the entire diagram. The information that's passed is basically just the commandline, env vars, and a handle to the console of the unelevated sudo's console. Once it's got a handle to the console, the elevated sudo can spawn the target app attached to the original console, rather than a new one. Simple as that!


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: