To add the cap_net_raw capability to (for eg /bin/ping), we use the following:
#setcap cap_net_raw=ep /bin/ping
What is the meaning of ep and why is it required here ?
Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.
Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.
Lost your password? Please enter your email address. You will receive a link and will create a new password via email.
Please briefly explain why you feel this question should be reported.
Please briefly explain why you feel this answer should be reported.
Please briefly explain why you feel this user should be reported.
This sets the
CAP_NET_RAWbit in both the “effective” (e) and “permitted” (p) capability sets. These two sets, along with the “inheritable” set, govern the capabilities that a process has or can set.See more here:
capabilities – Linux man page