This is the second in a series of eight patches to the BSD Secure Levels LSM. It allows setuid and setgid on directories. It also disallows the creation of setuid/setgid executables via open or mknod. Thanks to Brad Spengler for the suggestion. Signed off by: Michael Halcrow