diff options
author | John Southworth <john.southworth@vyatta.com> | 2011-10-20 16:34:41 -0500 |
---|---|---|
committer | John Southworth <john.southworth@vyatta.com> | 2011-10-20 16:34:41 -0500 |
commit | b9d0d6bb4cddbafe15b28bbe841bd9a5e3a237e4 (patch) | |
tree | 3ae182e7fff6016264530cd8837e127a7633cdfa | |
parent | d1f64e253ba4049d5950adcf1e7e94d25078cca6 (diff) | |
download | vyatta-cfg-system-b9d0d6bb4cddbafe15b28bbe841bd9a5e3a237e4.tar.gz vyatta-cfg-system-b9d0d6bb4cddbafe15b28bbe841bd9a5e3a237e4.zip |
Bugfix 7575 allow tshark to run as unprivileged user, tshark uses dumpcap as the packet interface so dumpcap needs cap_net_raw and cap_net_admin
-rw-r--r-- | sysconf/filecaps | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/sysconf/filecaps b/sysconf/filecaps index 904b0938..a3471d98 100644 --- a/sysconf/filecaps +++ b/sysconf/filecaps @@ -14,6 +14,7 @@ cap_net_admin=pe /usr/sbin/brctl # Raw sockets cap_net_raw=pe /usr/bin/tshark cap_net_raw=pe /usr/sbin/tcpdump +cap_net_raw,cap_net_admin=eip /usr/bin/dumpcap # Allow changes to system settings cap_net_admin,cap_sys_admin=pe /sbin/sysctl |