projects
/
platform
/
core
/
security
/
security-config.git
/ commitdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
| commitdiff |
tree
raw
|
patch
| inline |
side by side
(parent:
6d7a2e8
)
Remove cap_net_raw in /usr/bin/nether
87/138887/1
author
jin-gyu.kim
<jin-gyu.kim@samsung.com>
Fri, 14 Jul 2017 06:51:30 +0000
(15:51 +0900)
committer
jin-gyu.kim
<jin-gyu.kim@samsung.com>
Fri, 14 Jul 2017 06:51:33 +0000
(15:51 +0900)
- cap_net_raw is not required for nether.
Change-Id: I20481b2fb5f3164ce1fb566765ddd2f125f92b8d
config/set_capability
patch
|
blob
|
history
diff --git
a/config/set_capability
b/config/set_capability
index 87f6b2b8342cb76477b61b3fc918124eff251fc8..88cad51eab51132bcd3fa21949c2ba98059215ae 100755
(executable)
--- a/
config/set_capability
+++ b/
config/set_capability
@@
-459,10
+459,9
@@
fi
# Date July 4, 2017
# Required cap_net_admin, cap_net_raw
# cap_net_admin for netfilter work
-# cap_net_raw to restore firewall with iptable ( TODO : need to be removed)
if [ -e "/usr/bin/nether" ]
-then /usr/sbin/setcap cap_net_admin
,cap_net_raw
=ei /usr/bin/nether
+then /usr/sbin/setcap cap_net_admin=ei /usr/bin/nether
fi
# Package platform/core/appfw/amd