Project

General

Profile

Actions

Bug #2009

closed

Suricata is unable to get offloading settings when run under non-root

Added by Alexander Gozman about 7 years ago. Updated about 7 years ago.

Status:
Closed
Priority:
Normal
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

When suricata is started under non-root account, errors like "Failure when trying to get feature via ioctl" occur. It seems that privileges are dropped before this system related stuff and CAP_NET_ADMIN should be added.

The problem occurs on current master.

Actions

Also available in: Atom PDF