OnCallReady

Commands

capsh - capability shell wrapper

capsh --decode=HEX | --print

Options you will use

--decode=HEX
turn a CapEff/CapBnd hex mask from /proc/PID/status into capability names
--print
show the current capability state

Examples

$ capsh --decode=00000000a80425fb

Docker's default capability set

Taught in

Try capsh in a real terminal Free, in your browser - a real Ubuntu terminal to try it in, with missions that check your work.