[systemd-devel] AmbientCapabilities working examples?

Kamil Jońca kjonca at o2.pl
Tue Sep 5 03:09:13 UTC 2017


Mantas Mikulėnas <grawity at gmail.com> writes:

> On Mon, Sep 4, 2017, 21:42 Kamil Jońca <kjonca at o2.pl> wrote:
>
>     I try to configure my freeradius service with capabilities
>     (https://lists.debian.org/debian-devel/2017/09/msg00062.html)
>    
>     i can do with setting capabilities on freeradius binary.
>     But I headr about AmbientCapabilities directive and I tried to use
>     it. Without success - freeradius dhcp server  cannot bind to port 68.
>
> Make sure to have removed all file capabilities from /usr/sbin/freeradius, as their presence disables ambient capabilities.
>

Ahh.
I "cleared" capabilities by:
setcap "" /file/
instead of
setcap -r /file/

thanks.

KJ

-- 
http://stopstopnop.pl/stop_stopnop.pl_o_nas.html
Young men think old men are fools; but old men know young men are fools.
		-- George Chapman


More information about the systemd-devel mailing list