From caec92e92e136a2f731f6d4c45db8463896fc80a Mon Sep 17 00:00:00 2001 From: MichaIng Date: Mon, 1 Jun 2020 00:17:38 +0200 Subject: [PATCH] v6.31 + Network | Grant all users "ping" access without the need for sudo, setuid, CAP_NET_RAW or CAP_NET_ADMIN. Further infos and discussion about this: - https://fedoraproject.org/wiki/Changes/EnableSysctlPingGroupRange - https://github.com/systemd/systemd/pull/13141 - https://github.com/MichaIng/DietPi/issues/1012 --- rootfs/etc/sysctl.d/dietpi.conf | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/rootfs/etc/sysctl.d/dietpi.conf b/rootfs/etc/sysctl.d/dietpi.conf index e6dfc7c26a..177e2bb12d 100644 --- a/rootfs/etc/sysctl.d/dietpi.conf +++ b/rootfs/etc/sysctl.d/dietpi.conf @@ -1 +1,5 @@ +# Reduce swap file usage to a minimum vm.swappiness=1 + +# Allow all users to "ping" without further capabilities: https://fedoraproject.org/wiki/Changes/EnableSysctlPingGroupRange +net.ipv4.ping_group_range = 0 2147483647