Regular user cannot run "ip" commands with setcap
Issue
- Regular user cannot run "ip" commands with setcap
- We set Linux capabilites with
setcap cap_net_admin,cap_net_raw=eip /usr/sbin/ipso that regular unprivileged users can runipcommands. This used to work withiproute-5.12.0-4.el8but does not work anymore. - The
ipcommand as normal user fails withRTNETLINK answers: Operation not permitted
Environment
- Red Hat Enterprise Linux 8
iproute-5.15.0-4.el8iproute-5.18.0-1.1.el8_8- Capabilities
NET_ADMINonipbinary
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.