Package: dublin-traceroute
Version: 0.4.2-1
Severity: wishlist
Tags: patch

Dear Maintainer,

It is possible to run this without root by first running:

$ sudo setcap cap_net_raw+eip /usr/bin/dublin-traceroute

However this carries its own issues - i.e. all users can then run it with these
capabilities, which might be unsafe. Please see the wireshark-common package
for their solution which is to set this cap but also restrict execution to
users of a particular group.

X

-- System Information:
Debian Release: buster/sid
  APT prefers testing
  APT policy: (990, 'testing'), (500, 'unstable-debug'), (500, 
'testing-debug'), (500, 'buildd-unstable'), (500, 'stable'), (300, 'unstable'), 
(100, 'experimental'), (1, 'experimental-debug')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.14.0-3-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_GB.utf8, LC_CTYPE=en_GB.utf8 (charmap=UTF-8), LANGUAGE=en_GB:en 
(charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages dublin-traceroute depends on:
ii  libc6                 2.27-2
ii  libdublintraceroute0  0.4.2-1
ii  libgcc1               1:8-20180312-2
ii  libstdc++6            8-20180312-2
ii  libtins3.4            3.4-2+b1

Versions of packages dublin-traceroute recommends:
ii  libcap2-bin  1:2.25-1.2

dublin-traceroute suggests no packages.

-- no debconf information

Reply via email to