diff --git a/man2/mount.2 b/man2/mount.2 index d8521880b..d7d5b2ad4 100644 --- a/man2/mount.2 +++ b/man2/mount.2 @@ -220,7 +220,9 @@ Do not allow programs to be executed from this filesystem. .TP .B MS_NOSUID Do not honor set-user-ID and set-group-ID bits or file capabilities -when executing programs from this filesystem. +when executing programs from this filesystem. In addition, SELinux domain +transitions require permission nosuid_transition, which in turn needs +also policy capability nnp_nosuid_transition. .\" (This is a security feature to prevent users executing set-user-ID and .\" set-group-ID programs from removable disk devices.) .TP