[RFC 0/2] Split out firmware upgrade from CAP_SYS_ADMIN

From: Daniil Lunev
Date: Thu Jul 22 2021 - 20:59:52 EST


Signal boost on this thread for we are interested in a mechanism like that to
avoid running firmware updater with root privileges. We are looking into using
the mechanism to be able to update NVMe and SATA devices from a user with
limited permissions, and to tighten the security for eMMC device, which
currently require only RAW_IO capability to perform a firmware upgrade.