set file capabilities
[−q] [−v] (capabilities|−|−r)
filename [ ... capabilitiesN fileN ]
In the absence
of the −v (verify) option setcap sets
the capabilities of each specified filename to the
capabilities specified. The −v option is
used to verify that the specified capabilities are currently
associated with the file.
capabilities are specified in the form described in
capability string, ’−’, can be used
to indicate that capabilities are read from the standard
input. In such cases, the capability set is terminated with
a blank line.
capability string, ’−r’, is used to
remove a capability set from a file.
−q flag is used to make the program less
verbose in its output.
setcap program will exit with a 0 exit code if
successful. On failure, the exit code is 1.