Daniel J Walsh
bae80a0b66
Clear all caps, except the bounding set, when --user is specified.
...
Currently we are giving all caps to users when running with podman run --user,
They should get none by default. If the command line includes --cap-add, then
we need to run with those capabilties. Similarly we need to drop caps from
bounding set, if user specifies --cap-drop
Signed-off-by: Daniel J Walsh <dwalsh@redhat.com>
Closes : #851
Approved by: mheon
2018-05-31 13:46:08 +00:00
..
2018-04-05 14:13:49 +00:00
2018-03-14 20:38:08 +00:00
2018-04-30 21:07:59 +00:00
2018-02-21 14:22:36 +00:00
2018-04-19 14:19:04 +00:00
2018-03-26 23:27:00 +00:00
2018-04-30 19:58:22 +00:00
2018-02-05 20:17:37 +00:00
2018-03-29 16:31:43 +00:00
2018-02-21 14:22:36 +00:00
2018-01-29 19:12:20 +00:00
2018-02-21 14:22:36 +00:00
2018-03-14 20:38:08 +00:00
2018-05-25 15:15:47 +00:00
2018-05-25 15:15:47 +00:00
2018-02-09 15:27:52 +00:00
2018-02-08 12:37:07 -06:00
2018-03-14 20:38:08 +00:00
2018-02-08 12:37:07 -06:00
2018-03-14 20:38:08 +00:00
2018-03-20 16:20:12 +00:00
2018-05-25 08:45:15 +00:00
2018-04-23 17:34:26 +08:00
2018-03-16 13:35:10 +00:00
2018-05-25 08:45:15 +00:00
2018-05-11 14:43:57 +00:00
2018-02-05 20:17:37 +00:00
2018-02-05 20:17:37 +00:00
2018-04-18 10:58:24 +00:00
2018-02-15 00:48:13 +00:00
2018-02-21 16:49:00 +00:00
2018-02-07 14:55:20 -06:00
2018-05-01 21:47:34 +00:00
2018-02-07 14:55:20 -06:00
2018-04-03 22:23:23 +00:00
2018-04-14 13:48:35 +00:00
2018-03-30 09:17:27 +00:00
2018-05-31 13:46:08 +00:00
2018-05-04 17:15:55 +00:00
2018-04-30 19:58:22 +00:00
2018-04-24 13:42:37 +00:00
2018-03-15 17:45:11 +00:00
2018-03-14 20:38:08 +00:00
2018-03-14 20:38:08 +00:00
2018-02-26 18:28:54 +00:00
2018-03-14 20:38:08 +00:00
2018-02-07 14:55:20 -06:00
2018-01-29 19:12:20 +00:00