Re: pam and pam-cap don't play along
- To: debian-user@lists.debian.org
- Subject: Re: pam and pam-cap don't play along
- From: Kamil Jońca <kjonca@o2.pl>
- Date: Sun, 21 Jul 2024 06:55:41 +0200
- Message-id: <[🔎] 87h6cjpcmq.fsf@alfa.kjonca>
- In-reply-to: <J2qhr-3yI2-5@gated-at.bofh.it> (daggs@gmx.com's message of "Sun, 21 Jul 2024 00:00:01 +0200")
- References: <J2qhr-3yI2-5@gated-at.bofh.it>
daggs <daggs@gmx.com> writes:
> Greetings,
>
> I have bookworm installation where I want to allow a group of users to run a specific binary that needs to execute a ioctl which is not possible for normal users.
> in comes pam+libcap.
> so I've installed libcap, updated /etc/security/capability.conf with this line: cap_net_admin @igor
Hm. In "my" man capability.conf there is no mention about "@"
sign (I guess you wante to use group?) Maybe you should try "igor" first?
KJ
--
http://wolnelektury.pl/wesprzyj/teraz/
Been Transferred Lately?
Reply to: