diff options
| author | Ophestra <cat@gensokyo.uk> | 2026-02-28 20:18:30 +0900 |
|---|---|---|
| committer | Ophestra <cat@gensokyo.uk> | 2026-02-28 20:18:30 +0900 |
| commit | cd9b534d6b1d432d3c997ccc5b14f630afb9dda6 (patch) | |
| tree | fcf2e26356d614bb081e94285a1a8eb19cb8283c /container/capability.go | |
| parent | 84e6922f3073ec09756df6075a801529ecd202f6 (diff) | |
container: improve documentation
This change removes inconsistencies collected over time in this package.
Signed-off-by: Ophestra <cat@gensokyo.uk>
Diffstat (limited to 'container/capability.go')
| -rw-r--r-- | container/capability.go | 12 |
1 files changed, 9 insertions, 3 deletions
diff --git a/container/capability.go b/container/capability.go index 9f526e65..3ea9d028 100644 --- a/container/capability.go +++ b/container/capability.go @@ -50,10 +50,16 @@ func capset(hdrp *capHeader, datap *[2]capData) error { } // capBoundingSetDrop drops a capability from the calling thread's capability bounding set. -func capBoundingSetDrop(cap uintptr) error { return Prctl(syscall.PR_CAPBSET_DROP, cap, 0) } +func capBoundingSetDrop(cap uintptr) error { + return Prctl(syscall.PR_CAPBSET_DROP, cap, 0) +} // capAmbientClearAll clears the ambient capability set of the calling thread. -func capAmbientClearAll() error { return Prctl(PR_CAP_AMBIENT, PR_CAP_AMBIENT_CLEAR_ALL, 0) } +func capAmbientClearAll() error { + return Prctl(PR_CAP_AMBIENT, PR_CAP_AMBIENT_CLEAR_ALL, 0) +} // capAmbientRaise adds to the ambient capability set of the calling thread. -func capAmbientRaise(cap uintptr) error { return Prctl(PR_CAP_AMBIENT, PR_CAP_AMBIENT_RAISE, cap) } +func capAmbientRaise(cap uintptr) error { + return Prctl(PR_CAP_AMBIENT, PR_CAP_AMBIENT_RAISE, cap) +} |
