mirror of https://github.com/mkerrisk/man-pages
capabilities.7: Document the 'no_file_caps' kernel command-line option
Signed-off-by: Michael Kerrisk <mtk.manpages@gmail.com>
This commit is contained in:
parent
962f9d0969
commit
f6acfeb8f8
|
@ -1134,6 +1134,11 @@ the capability transitions described above may
|
|||
be performed (i.e., file capabilities may be ignored) for the same reasons
|
||||
that the set-user-ID and set-group-ID bits are ignored; see
|
||||
.BR execve (2).
|
||||
.IR Note :
|
||||
if the kernel was booted with the
|
||||
.I no_file_caps
|
||||
option, then file capabilities are ignored (treated as empty)
|
||||
during the capability transitions described above.
|
||||
.PP
|
||||
.IR Note :
|
||||
according to the rules above,
|
||||
|
|
Loading…
Reference in New Issue