libcap.xml 6.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218
  1. <?xml version="1.0" encoding="ISO-8859-1"?>
  2. <!DOCTYPE sect1 PUBLIC "-//OASIS//DTD DocBook XML V4.5//EN"
  3. "http://www.oasis-open.org/docbook/xml/4.5/docbookx.dtd" [
  4. <!ENTITY % general-entities SYSTEM "../general.ent">
  5. %general-entities;
  6. ]>
  7. <sect1 id="ch-system-libcap" role="wrap">
  8. <?dbhtml filename="libcap.html"?>
  9. <sect1info condition="script">
  10. <productname>libcap</productname>
  11. <productnumber>&libcap-version;</productnumber>
  12. <address>&libcap-url;</address>
  13. </sect1info>
  14. <title>Libcap-&libcap-version;</title>
  15. <indexterm zone="ch-system-libcap">
  16. <primary sortas="a-Libcap">Libcap</primary>
  17. </indexterm>
  18. <sect2 role="package">
  19. <title/>
  20. <para>The Libcap package implements the user-space interfaces to the POSIX
  21. 1003.1e capabilities available in Linux kernels. These capabilities are a
  22. partitioning of the all powerful root privilege into a set of distinct
  23. privileges.</para>
  24. <segmentedlist>
  25. <segtitle>&buildtime;</segtitle>
  26. <segtitle>&diskspace;</segtitle>
  27. <seglistitem>
  28. <seg>&libcap-fin-sbu;</seg>
  29. <seg>&libcap-fin-du;</seg>
  30. </seglistitem>
  31. </segmentedlist>
  32. </sect2>
  33. <sect2 role="installation">
  34. <title>Installation of Libcap</title>
  35. <para>Prevent static libraries from being installed:</para>
  36. <screen><userinput remap="pre">sed -i '/install -m.*STA/d' libcap/Makefile</userinput></screen>
  37. <para>Compile the package:</para>
  38. <screen><userinput remap="make">make prefix=/usr lib=lib</userinput></screen>
  39. <variablelist>
  40. <title>The meaning of the make option:</title>
  41. <varlistentry>
  42. <term><parameter>lib=lib</parameter></term>
  43. <listitem>
  44. <para>This parameter sets the library directory to
  45. <filename>/usr/lib</filename> rather than
  46. <filename>/usr/lib64</filename> on x86_64. It has no effect on
  47. x86.</para>
  48. </listitem>
  49. </varlistentry>
  50. </variablelist>
  51. <para>To test the results, issue:</para>
  52. <screen><userinput remap="test">make test</userinput></screen>
  53. <para>Install the package and make sure the essential libraries are in
  54. the correct directory:</para>
  55. <screen><userinput remap="install">make prefix=/usr lib=lib install
  56. for libname in cap psx; do
  57. mv -v /usr/lib/lib${libname}.so.* /lib
  58. ln -sfv ../../lib/lib${libname}.so.2 /usr/lib/lib${libname}.so
  59. chmod -v 755 /lib/lib${libname}.so.&libcap-version;
  60. done</userinput></screen>
  61. </sect2>
  62. <!-- - - - - - - - - - -->
  63. <!-- Multilib - 32bit -->
  64. <!-- - - - - - - - - - -->
  65. <sect2 arch="ml_32,ml_all" role="installation">
  66. <title>Installation of Libcap - 32bit</title>
  67. <para>Clean previous build:</para>
  68. <screen><userinput remap="pre">make distclean</userinput></screen>
  69. <para>Compile the package:</para>
  70. <screen><userinput remap="make">make CC="gcc -m32 -march=i686"</userinput></screen>
  71. <para>Install the package:</para>
  72. <screen><userinput remap="install">make lib=lib32 prefix=$PWD/DESTDIR/usr -C libcap install
  73. cp -Rv DESTDIR&usr-lib-m32;/* &usr-lib-m32;
  74. sed -e "s|^libdir=.*|libdir=&usr-lib-m32;|" -i &usr-lib-m32;/pkgconfig/lib{cap,psx}.pc
  75. chmod -v 755 &usr-lib-m32;/libcap.so.&libcap-version;
  76. rm -rf DESTDIR</userinput></screen>
  77. </sect2><!-- m32 -->
  78. <!-- - - - - - - - - - -->
  79. <!-- Multilib - x32bit -->
  80. <!-- - - - - - - - - - -->
  81. <sect2 arch="ml_x32,ml_all" role="installation">
  82. <title>Installation of Libcap - x32bit</title>
  83. <para>Clean previous build:</para>
  84. <screen><userinput remap="pre">make distclean</userinput></screen>
  85. <para>Compile the package:</para>
  86. <screen><userinput remap="make">make CC="gcc -mx32 -march=x86-64"</userinput></screen>
  87. <para>Install the package:</para>
  88. <screen><userinput remap="install">make lib=libx32 prefix=$PWD/DESTDIR/usr -C libcap install
  89. cp -Rv DESTDIR&usr-lib-mx32;/* &usr-lib-mx32;
  90. sed -e "s|^libdir=.*|libdir=&usr-lib-mx32;|" -i &usr-lib-mx32;/pkgconfig/lib{cap,psx}.pc
  91. chmod -v 755 &usr-lib-mx32;/libcap.so.&libcap-version;
  92. rm -rf DESTDIR</userinput></screen>
  93. </sect2><!-- mx32 -->
  94. <sect2 id="contents-libcap" role="content">
  95. <title>Contents of Libcap</title>
  96. <segmentedlist>
  97. <segtitle>Installed programs</segtitle>
  98. <segtitle>Installed library</segtitle>
  99. <seglistitem>
  100. <seg>capsh, getcap, getpcaps, and setcap</seg>
  101. <seg>libcap.so and libpsx.so</seg>
  102. </seglistitem>
  103. </segmentedlist>
  104. <variablelist>
  105. <bridgehead renderas="sect3">Short Descriptions</bridgehead>
  106. <?dbfo list-presentation="list"?>
  107. <?dbhtml list-presentation="table"?>
  108. <varlistentry id="capsh">
  109. <term><command>capsh</command></term>
  110. <listitem>
  111. <para>A shell wrapper to explore and constrain capability support</para>
  112. <indexterm zone="ch-system-libcap capsh">
  113. <primary sortas="b-capsh">capsh</primary>
  114. </indexterm>
  115. </listitem>
  116. </varlistentry>
  117. <varlistentry id="getcap">
  118. <term><command>getcap</command></term>
  119. <listitem>
  120. <para>Examines file capabilities</para>
  121. <indexterm zone="ch-system-libcap getcap">
  122. <primary sortas="b-getcap">getcap</primary>
  123. </indexterm>
  124. </listitem>
  125. </varlistentry>
  126. <varlistentry id="getpcaps">
  127. <term><command>getpcaps</command></term>
  128. <listitem>
  129. <para>Displays the capabilities on the queried process(es)</para>
  130. <indexterm zone="ch-system-libcap getpcaps">
  131. <primary sortas="b-getpcaps">getpcaps</primary>
  132. </indexterm>
  133. </listitem>
  134. </varlistentry>
  135. <varlistentry id="setcap">
  136. <term><command>setcap</command></term>
  137. <listitem>
  138. <para>Sets file capabilities</para>
  139. <indexterm zone="ch-system-libcap setcap">
  140. <primary sortas="b-setcap">setcap</primary>
  141. </indexterm>
  142. </listitem>
  143. </varlistentry>
  144. <varlistentry id="libcap">
  145. <term><filename class="libraryfile">libcap</filename></term>
  146. <listitem>
  147. <para>Contains the library functions for manipulating POSIX 1003.1e
  148. capabilities</para>
  149. <indexterm zone="ch-system-libcap libcap">
  150. <primary sortas="c-libcap">libcap</primary>
  151. </indexterm>
  152. </listitem>
  153. </varlistentry>
  154. <varlistentry id="libpsx">
  155. <term><filename class="libraryfile">libpsx</filename></term>
  156. <listitem>
  157. <para>Contains functions to support POSIX semantics for syscalls
  158. associated with the pthread library</para>
  159. <indexterm zone="ch-system-libcap libpsx">
  160. <primary sortas="c-libpsx">libpsx</primary>
  161. </indexterm>
  162. </listitem>
  163. </varlistentry>
  164. </variablelist>
  165. </sect2>
  166. </sect1>