Re: Frustrated with capabilities..

From: Markku Savela
Date: Thu Aug 28 2008 - 10:45:54 EST



> From: Pavel Machek <pavel@xxxxxxx>

> Yes, you need upcoming filesystem capabilities. Binary may not
> inherit capabilities unless filesystem flags permit that.

I think this is wrong. Normal executables inherit uid/gid and
supplementary groups by default. Why should capabilities be any
different?

IMHO, even with file system capabilities, the default should be
inherit, if nothing else is specified.


--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/