Andrew G. Morgan b35370f7f6 Implement --strict capsh argument.
Up to this point, capsh hides some complexity concerning raising
the CAP_SETPCAP in order to raise inheritable and drop bounding
set values. This made it harder to explain some aspects of
inheritance, and I ran into that detail writing this:

https://sites.google.com/site/fullycapable/why-didnt-that-work#h.z7rwbcazhr4r

Refactored capsh.c to clean up some buggy code, and also fix some
documentation, including reference to the --strict argument.

Signed-off-by: Andrew G. Morgan <morgan@kernel.org>
2021-09-07 13:14:54 -07:00
..
2021-08-14 11:03:27 -07:00
2021-09-01 07:25:18 -07:00
2021-08-14 11:03:27 -07:00
2021-09-07 13:14:54 -07:00
2021-08-29 15:43:17 -07:00
2021-08-29 15:43:17 -07:00
2021-08-29 15:43:17 -07:00