← Back to systems

Linux Capabilities

6 questions · ~5 min · intermediate

Six questions on the capability model that actually matters in production: effective checks, execve transformation, ambient clearing, bounding-set masks, namespace-relative privilege, and no_new_privs.

0 / 6

Which capability set does the kernel usually consult for a normal privileged operation check such as opening a raw socket?

Press 1 to 4 to pick an answer