LWN.net Logo

User namespaces progress

User namespaces progress

Posted Jan 3, 2013 17:40 UTC (Thu) by man_ls (subscriber, #15091)
In reply to: User namespaces progress by Cyberax
Parent article: User namespaces progress

Have you tried setcap?

setcap 'cap_net_bind_service=+ep' /path/to/program
It worked for me but it was not Java; in your case run setcap for the java binary.


(Log in to post comments)

User namespaces progress

Posted Jan 3, 2013 19:15 UTC (Thu) by Cyberax (✭ supporter ✭, #52523) [Link]

And now all Java programs have this privilege. Which is not that bad, since this restriction is brain-dead in the first place. But it also breaks during updates and is totally non-transparent (NOBODY checks file caps).

You might actually notice that I have an answer in the thread you've linked: http://stackoverflow.com/a/7701793/625001 However, while it works for erlang it somehow fails for Java. Don't ask me why.

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds