https://bugzilla.novell.com/show_bug.cgi?id=682244
https://bugzilla.novell.com/show_bug.cgi?id=682244#c21
--- Comment #21 from Vincent Untz
Ok, but we'd prefer to not have any caps at all, see comment#14.
We do not package the file with caps, so there's no caps by default. This is why we get this warning on startup: gnome-keyring-daemon: insufficient process capabilities, unsecure memory might get used I still believe it'd be good to have ipc_lock cap for /usr/bin/gnome-keyring-daemon since it's handling all the secrets for each user, and there might be cases where the 64k limit mentioned in comment 14 is too low. What is the downside of adding ipc_lock for this binary? -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.