call to succeed, and must give up those privledges as soon as the new root has been aquired. Use setgid() & setuid() to explicitly set the user and group IDs to non- priveleged values. This change now requires tftpd to be executed by root. I haven't studied the security implications of making it setuid root, so inetd.conf needs to be changed to start it as root.