From 7aea304549cea2c885c2d813c7a15f617f4ebf2a Mon Sep 17 00:00:00 2001 From: Patrick Schleizer Date: Mon, 23 Dec 2019 00:26:15 -0500 Subject: [PATCH] comment --- usr/lib/security-misc/permission-hardening | 3 +++ 1 file changed, 3 insertions(+) diff --git a/usr/lib/security-misc/permission-hardening b/usr/lib/security-misc/permission-hardening index d67c865..0f8a223 100755 --- a/usr/lib/security-misc/permission-hardening +++ b/usr/lib/security-misc/permission-hardening @@ -387,6 +387,9 @@ set_file_perms() { fi if [ "$capability_from_config" = "none" ]; then + # sudo setcap -r /usr/bin/ping + # Failed to set capabilities on file `/usr/bin/ping' (No data available) + # The value of the capability argument is not permitted for a file. Or the file is not a regular (non-symlink) file echo_wrapper_audit setcap -r "$fso" else if ! capsh --print | grep "Bounding set" | grep -q "$capability_from_config" ; then