prctl(PR_SET_KEEPCAPS, 1, 0, 0, 0);
struct __user_cap_header_struct header;
struct __user_cap_data_struct cap;
header.version = _LINUX_CAPABILITY_VERSION;
cap.effective = cap.permitted = (1 << CAP_NET_ADMIN) | (1 << CAP_NET_RAW) | ( 1 << CAP_SYS_BOOT) | (1<<CAP_SETUID);
cap.inheritable = 0;