make correction to the capability.conf manpage
This commit is contained in:
parent
95e684ecd7
commit
ec001e0d30
2 changed files with 31 additions and 1 deletions
26
0001-doc-document-the-use-of-to-refer-to-all-users.patch
Normal file
26
0001-doc-document-the-use-of-to-refer-to-all-users.patch
Normal file
|
|
@ -0,0 +1,26 @@
|
|||
From 70783bddc65628a1afc3dd2f8b4b3f03fc839b8e Mon Sep 17 00:00:00 2001
|
||||
From: Carlos Rodriguez-Fernandez <carlosrodrifernandez@gmail.com>
|
||||
Date: Fri, 5 Apr 2024 16:37:30 -0700
|
||||
Subject: [PATCH] doc: document the use of `*` to refer to all users
|
||||
|
||||
Signed-off-by: Carlos Rodriguez-Fernandez <carlosrodrifernandez@gmail.com>
|
||||
---
|
||||
doc/capability.conf.5 | 2 +-
|
||||
1 file changed, 1 insertion(+), 1 deletion(-)
|
||||
|
||||
diff --git a/doc/capability.conf.5 b/doc/capability.conf.5
|
||||
index 10ff63b..15535f4 100644
|
||||
--- a/doc/capability.conf.5
|
||||
+++ b/doc/capability.conf.5
|
||||
@@ -16,7 +16,7 @@ Where \fB<IAB>\fR refers to the text format for an inheritable IAB capability tu
|
||||
.P
|
||||
The reserved word \fBall\fR does \fInot\fR grant \fIall the inheritable capabilities\fR, but acts as a simple \fIpass\-through\fR for any prevailing IAB tuple capabilities\. The reserved word \fBnone\fR refers to an empty \fIInheritable\fR capability set (and by extension an empty \fIAmbient\fR vector)\.
|
||||
.P
|
||||
-Here \fB<WHO>\fR refers to the space separated PAM username values that will be granted the specified \fIIAB\fR tuple\. A name prefixed with the character \fB@\fR refers to the locally defined \fB/etc/group\fR \fIetc\fR users listed under that group name\.
|
||||
+Here \fB<WHO>\fR refers to the space separated PAM username values that will be granted the specified \fIIAB\fR tuple\. A name prefixed with the character \fB@\fR refers to the locally defined \fB/etc/group\fR \fIetc\fR users listed under that group name\. An asterisk "\fB*\fR" can be used to denote all users\.
|
||||
.P
|
||||
The parsing of the file chooses the first line that applies to the authenticating user, and attempts to apply that and only that\.
|
||||
.P
|
||||
--
|
||||
2.44.0
|
||||
|
||||
|
|
@ -1,6 +1,6 @@
|
|||
Name: libcap
|
||||
Version: 2.69
|
||||
Release: 7%{?dist}
|
||||
Release: 8%{?dist}
|
||||
Summary: Library for getting and setting POSIX.1e capabilities
|
||||
URL: https://sites.google.com/site/fullycapable/
|
||||
License: BSD-3-Clause OR GPL-2.0-only
|
||||
|
|
@ -9,6 +9,7 @@ Source0: https://mirrors.edge.kernel.org/pub/linux/libs/security/linux-privs/lib
|
|||
Source1: https://mirrors.edge.kernel.org/pub/linux/libs/security/linux-privs/libcap2/%{name}-%{version}.tar.sign
|
||||
Source2: https://git.kernel.org/pub/scm/docs/kernel/pgpkeys.git/plain/keys/29EE848AE2CCF3F4.asc
|
||||
Patch0: 0001-doc-document-pam_cap-and-its-conf.patch
|
||||
Patch1: 0001-doc-document-the-use-of-to-refer-to-all-users.patch
|
||||
|
||||
BuildRequires: pam-devel gcc
|
||||
BuildRequires: make
|
||||
|
|
@ -114,6 +115,9 @@ chmod +x %{buildroot}/%{_libdir}/*.so.*
|
|||
%endif
|
||||
|
||||
%changelog
|
||||
* Fri Apr 05 2024 Carlos Rodriguez-Fernandez <carlosrodrifernandez@gmail.com> - 2.69-8
|
||||
- Make correction to the capability.conf manpage
|
||||
|
||||
* Fri Apr 05 2024 Carlos Rodriguez-Fernandez <carlosrodrifernandez@gmail.com> - 2.69-7
|
||||
- Reenable PIE in the captree tool
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue