mupuf.org // we are octopimupuf.org

[Linux Journal] Making-root-unprivileged

Well this is a really short bookmark article. You’ll be warned.

Would you like to get rid of some setuid on your binaries ? Well, Linux 2.2 introduced capacities to get rid of them. Linux Journal’s Making-root-unprivileged is an attempt to have a setuid free Linux distribution, have fun !

If you’re using Spencer’s GRSecurity, you can use the GRSecurity Capability Names and Descriptions.

If you’re not using GRSecurity, I’ll soon send the capabilities currently available.

Another simpler article about this subject has been made by brain0, using-posix-capabilities-in-linux-part-one and using-posix-capabilities-in-linux-part-two.

Comments