blob: ae97df243b0b1419f8a7f1f2cf094d74275641da [file] [log] [blame] [edit]
Allows a process to set capabilities on files.
Permits a process to uid_map the uid=0 of the
parent user namespace into that of the child
namespace. Also, permits a process to override
securebits locks through user namespace
creation.