File nm-add-CAP_SYS_ADMIN-permission.patch of Package NetworkManager.15726
Index: NetworkManager-1.24.2/data/NetworkManager.service.in =================================================================== --- NetworkManager-1.24.2.orig/data/NetworkManager.service.in +++ NetworkManager-1.24.2/data/NetworkManager.service.in @@ -14,7 +14,7 @@ ExecStart=@sbindir@/NetworkManager --no- Restart=on-failure # NM doesn't want systemd to kill its children for it KillMode=process -CapabilityBoundingSet=CAP_NET_ADMIN CAP_DAC_OVERRIDE CAP_NET_RAW CAP_NET_BIND_SERVICE CAP_SETGID CAP_SETUID CAP_SYS_MODULE CAP_AUDIT_WRITE CAP_KILL CAP_SYS_CHROOT +CapabilityBoundingSet=CAP_NET_ADMIN CAP_DAC_OVERRIDE CAP_NET_RAW CAP_NET_BIND_SERVICE CAP_SETGID CAP_SETUID CAP_SYS_MODULE CAP_AUDIT_WRITE CAP_KILL CAP_SYS_CHROOT CAP_SYS_ADMIN ProtectSystem=true ProtectHome=read-only