Click Set Security Attributes
after you select a command or directory in the Commands Permitted column
if you want to specify optional security attributes to be in effect for
the individual command or for all commands in the specified directory as they run.
If you do not specify any security attributes, a command
in a rights profile runs normally, with the real
uid/gid, the effective uid/gid, the label,
and the clearance of the process that is executing the command
and with no inherited privileges.