Re: [PATCH 1/2] hostapd: run as user 'network'

2020-12-07 Thread Daniel Golle
On Mon, Dec 07, 2020 at 08:57:05PM +0100, Hauke Mehrtens wrote: > On 12/7/20 7:14 PM, Daniel Golle wrote: > > Granting capabilities CAP_NET_ADMIN and CAP_NET_RAW allows running > > hostapd and wpa_supplicant without root priviledges. > > Add ubus acl allowing the necessary ubus interactions for

Re: [PATCH 1/2] hostapd: run as user 'network'

2020-12-07 Thread Hauke Mehrtens
On 12/7/20 7:14 PM, Daniel Golle wrote: Granting capabilities CAP_NET_ADMIN and CAP_NET_RAW allows running hostapd and wpa_supplicant without root priviledges. Add ubus acl allowing the necessary ubus interactions for the 'network' user running hostapd/wpa_supplicant. To still allow netifd to

[PATCH 1/2] hostapd: run as user 'network'

2020-12-07 Thread Daniel Golle
Granting capabilities CAP_NET_ADMIN and CAP_NET_RAW allows running hostapd and wpa_supplicant without root priviledges. Add ubus acl allowing the necessary ubus interactions for the 'network' user running hostapd/wpa_supplicant. To still allow netifd to acquire the PID of wpa_supplicant and