user_namespaces.7: Clarify CAP_SYS_ADMIN details for mounting FS_USERNS_MOUNT filesystems

Signed-off-by: Michael Kerrisk <mtk.manpages@gmail.com>
This commit is contained in:
Michael Kerrisk 2016-06-26 16:09:06 +02:00
parent 329ad27142
commit 8a9fb19dbd
1 changed files with 3 additions and 2 deletions

View File

@ -230,8 +230,9 @@ user namespace can perform such operations.
Holding
.B CAP_SYS_ADMIN
within a (noninitial) user namespace allows the creation of bind mounts,
and mounting of the following types of filesystems:
within the user namespace associated with a process's mount namespace
allows that process to create bind mounts
and mount the following types of filesystems:
.\" fs_flags = FS_USERNS_MOUNT in kernel sources
.RS 4