commit | 1cd082d421609867a3fb73297d8bd7a7d8c8c37d | [log] [tgz] |
---|---|---|
author | Tom Cherry <tomcherry@google.com> | Wed Feb 06 10:45:56 2019 -0800 |
committer | Tom Cherry <tomcherry@google.com> | Wed Feb 06 11:25:18 2019 -0800 |
tree | f073749d06e463cb207dcd138ba78c5452bffcf4 | |
parent | 7303edd19457b91070db2aac995519da23f5af73 [diff] |
init: allow services to have no capabilities set In particular, this allows services running as the root user to have capabilities removed instead of always having full capabilities. Test: boot device with a root service with an empty capabilities option in init showing no capabilities in /proc/<pid>/status Change-Id: I569a5573ed4bc5fab0eb37ce9224ab708e980451