commit | c6c8643ae97b58dbbf0c36aaaec586a764d5396f | [log] [tgz] |
---|---|---|
author | Will Drewry <wad@chromium.org> | Sun Sep 18 14:37:22 2011 -0500 |
committer | Will Drewry <wad@chromium.org> | Fri Sep 23 12:46:23 2011 -0700 |
tree | c8cd595361c819eb66b631e80bb0d057534ab9f2 | |
parent | f89aef580a713810a788d7e5ccf2e030696b6847 [diff] |
libminijail: only clear supplemental groups on user/group change minijail should be runnable by an unprivileged user. This change allows that to be true. BUG=chromium-os:19459 TEST=minijail -S somepolicy /bin/ls (need to test transitions still) Change-Id: Ib540953ae2435414b3d3adbadb68238962f5c0ff Reviewed-on: http://gerrit.chromium.org/gerrit/7912 Reviewed-by: Elly Jones <ellyjones@chromium.org> Tested-by: Will Drewry <wad@chromium.org>