[Pkg-systemd-maintainers] Bug#739699: Bug#739699: Set capabilities for systemd-detect-virt

Michael Stapelberg stapelberg at debian.org
Thu Feb 27 11:56:56 GMT 2014


control: tags -1 + pending

Hi Michael,

Michael Biebl <biebl at debian.org> writes:
> $(SETCAP) cap_dac_override,cap_sys_ptrace=ep $(DESTDIR)$(bindir)/systemd-detect-virt
>
> Without those capabilities set, regular users only get a 
> "Failed to check for virtualization: Permission denied"
> when trying to use this tool.
>
> We should evaluate whether to run setcap in postinst.
> This would mean a dependency on libcap2-bin, though.
Sounds reasonable. I pushed
http://anonscm.debian.org/gitweb/?p=pkg-systemd/systemd.git;a=commitdiff;h=73b71c7fc5102b9749e1fd2811c2c5540aee8d39

-- 
Best regards,
Michael




More information about the Pkg-systemd-maintainers mailing list