From a6fabe384d8b2fc880c3649b4c0e7bda357fb91b Mon Sep 17 00:00:00 2001 From: =?utf8?q?Zbigniew=20J=C4=99drzejewski-Szmek?= Date: Sun, 19 Nov 2017 11:58:45 +0100 Subject: [PATCH] man: add link to kernel docs about no_new_privs --- man/systemd.exec.xml | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/man/systemd.exec.xml b/man/systemd.exec.xml index d043555860a..0aa0552f067 100644 --- a/man/systemd.exec.xml +++ b/man/systemd.exec.xml @@ -1448,7 +1448,11 @@ CapabilityBoundingSet=~CAP_B CAP_C RestrictAddressFamilies=, RestrictNamespaces=, PrivateDevices=, ProtectKernelTunables=, ProtectKernelModules=, MemoryDenyWriteExecute=, or - RestrictRealtime= are specified. + RestrictRealtime= are specified. + + Also see + No New Privileges Flag. + -- 2.39.5