From fef1469fe62bf923ba89077934c8b0e5d8cd0258 Mon Sep 17 00:00:00 2001 From: Patrick Schleizer Date: Mon, 23 Dec 2019 00:51:14 -0500 Subject: [PATCH] exit non-zero if capability removal failed --- usr/lib/security-misc/permission-hardening | 1 + 1 file changed, 1 insertion(+) diff --git a/usr/lib/security-misc/permission-hardening b/usr/lib/security-misc/permission-hardening index 9dc381f..6ab8b36 100755 --- a/usr/lib/security-misc/permission-hardening +++ b/usr/lib/security-misc/permission-hardening @@ -394,6 +394,7 @@ set_file_perms() { echo_wrapper_ignore setcap -r "$fso" getcap_output="$(getcap "$fso")" if [ ! "$getcap_output" = "" ]; then + exit_code=205 echo "ERROR: removing capabilities for fso '$fso' failed!" >&2 continue fi