@
mozkoe 受到保护的目录名单可参见 /System/Library/Sandbox/rootless.conf
然后这个文件里的内容是
/Applications/App
Store.app /Applications/
Automator.app /Applications/
Calculator.app /Applications/
Calendar.app /Applications/
Chess.app /Applications/
Contacts.app /Applications/
Dashboard.app /Applications/
Dictionary.app /Applications/DVD
Player.app /Applications/
FaceTime.app /Applications/Font
Book.app /Applications/Game
Center.app /Applications/Image
Capture.app /Applications/
Launchpad.app /Applications/
Mail.app /Applications/
Maps.app /Applications/
Messages.app /Applications/Mission
Control.app /Applications/
Notes.app /Applications/Photo
Booth.app /Applications/
Photos.app /Applications/
Preview.app /Applications/QuickTime
Player.app /Applications/
Reminders.app /Applications/
Safari.app /Applications/
Stickies.app /Applications/System
Preferences.app /Applications/
TextEdit.app /Applications/Time
Machine.app /Applications/Utilities/Activity
Monitor.app /Applications/Utilities/AirPort
Utility.app /Applications/Utilities/Audio MIDI
Setup.app /Applications/Utilities/Bluetooth File
Exchange.app /Applications/Utilities/Boot Camp
Assistant.app /Applications/Utilities/ColorSync
Utility.app /Applications/Utilities/
Console.app /Applications/Utilities/Digital Color
Meter.app /Applications/Utilities/Disk
Utility.app /Applications/Utilities/Feedback
Assistant.app /Applications/Utilities/
Grab.app /Applications/Utilities/
Grapher.app /Applications/Utilities/Keychain
Access.app /Applications/Utilities/Migration
Assistant.app /Applications/Utilities/Script
Editor.app /Applications/Utilities/System
Information.app /Applications/Utilities/
Terminal.app /Applications/Utilities/VoiceOver
Utility.app /Library/Preferences/SystemConfiguration/com.apple.Boot.plist
/System
* /System/Library/Caches
booter /System/Library/CoreServices
* /System/Library/CoreServices/Photo Library Migration
Utility.app /System/Library/CoreServices/RawCamera.bundle
* /System/Library/Extensions
/System/Library/Extensions/*
UpdateSettings /System/Library/LaunchDaemons/com.apple.UpdateSettings.plist
* /System/Library/Speech
* /System/Library/User Template
/bin
dyld /private/var/db/dyld
/sbin
/usr
* /usr/libexec/cups
* /usr/local
* /usr/share/man
# symlinks
/etc
/tmp
/var
所以。。。/usr/local 并没有幸免。。。。