[systemd-devel] RFC: Passing on initial client user in systemd-userdbd

Lennart Poettering lennart at poettering.net
Tue Nov 29 13:31:39 UTC 2022


On Di, 29.11.22 11:50, Dominik George (nik at naturalnet.de) wrote:

> Hi,
>
> > in theory, I have implemented that now […]
>
> In practice now, as well:
>
>   https://github.com/systemd/systemd/pull/25556
>
> However, something kicked back here a bit… systemd-userdbd drops all
> capabilities, and sending SO_PASSCRED requires CAP_SYS_ADMIN…
>
> What do we do about that?

Just add the capability to the service unit file.

Lennart

--
Lennart Poettering, Berlin


More information about the systemd-devel mailing list