Privilege Model
• The necessary “safety valves”—describe exceptions to normal access-control rules
• configuring network interface • mounting/unmounting
• debugging system processes
• Up to 200 privilege model
• Old model consisted of 2
– 0 root
– other