Download raw body.
libtls: a step towards privsep by default
If I understand this proposal, it is that libtls would eventually start to call call fork. I think it is not a good idea to have libraries that call fork themselves. It is something that a program should be responsible for, not a library. Programs handle process hierarchies and the consequences of having children, and this should not be a surprising feature of using a library.
libtls: a step towards privsep by default