[MERGE] Use libcap instead of direct linux capability syscalls

From: Henrik Nordstrom <henrik_at_henriknordstrom.net>
Date: Thu, 15 Oct 2009 21:01:36 +0200

The kernel interface, while some aspects of it is much simpler is also
not really meant to be called directly by applications.

The attached patch approximates the same functionality using libcap.
Differs slightly in how it sets the permitted capabilities to be kept on
uid change (explicit instead of masked), but end result is the same as
setting the capabilities won't work if these were not allowed.

Received on Thu Oct 15 2009 - 19:01:42 MDT

This archive was generated by hypermail 2.2.0 : Wed Oct 28 2009 - 12:00:05 MDT