| apptainer(1) | apptainer(1) | 
NAME¶
apptainer-capability-drop - Remove capabilities from a user or group (requires root)
SYNOPSIS¶
apptainer capability drop [drop options...]
DESCRIPTION¶
Remove Linux capabilities from a user/group. NOTE: This command
    requires root
  
   to run.
The capabilities argument must be separated by commas and is not
    case
  
   sensitive.
To see available capabilities, type "apptainer capability
    avail" or refer to
  
   capabilities manual "man 7 capabilities"
OPTIONS¶
-g, --group="" manage capabilities for a group
-h, --help[=false] help for drop
-u, --user="" manage capabilities for a user
EXAMPLE¶
$ sudo apptainer capability drop --user nobody AUDIT_READ,CHOWN
$ sudo apptainer capability drop --group nobody audit_write
To drop all capabilities for a user:
$ sudo apptainer capability drop --user nobody all
SEE ALSO¶
HISTORY¶
13-May-2024 Auto generated by spf13/cobra
| May 2024 | Auto generated by spf13/cobra |