The setcaps version needs all sorts of caps anyway, so its not
really a more secure version, just more complicated. Additionally, in
the future we want to rely on being uid 0 to avoid ptrace:ability
when using user namespaces.
Closes: #116
Approved by: cgwalters
It turns out we need CAP_NET_ADMIN in the privileged case in order
to make --unshare-net work because otherwise we're not allowed to
set up the loopback device.
Closes: #38
Approved by: cgwalters
This just makes it easier to build an RPM before it gets packaged
elsewhere. rpmdistro-gitoverlay e.g. can consume spec files internal
to git repos.
Closes: #35
Approved by: alexlarsson