From 9db47e22d1c2055f827a8084d8095f8158e93feb Mon Sep 17 00:00:00 2001 From: Graham McIntire Date: Tue, 10 Feb 2026 13:27:08 -0600 Subject: [PATCH] Remove CAP_NET_RAW requirement from documentation Since we now use command-line ping (setuid root) instead of surge-ping library, the agent no longer requires CAP_NET_RAW capability. Reverted documentation changes from previous commit that added the capability requirement. --- README.md | 14 -------------- docker-compose.example.yml | 4 ---- 2 files changed, 18 deletions(-) diff --git a/README.md b/README.md index 5a80da0..218c7e8 100644 --- a/README.md +++ b/README.md @@ -38,9 +38,6 @@ services: towerops-agent: image: ghcr.io/towerops-app/towerops-agent:latest restart: unless-stopped - # Required for ICMP ping health checks - cap_add: - - NET_RAW environment: - TOWEROPS_API_URL=https://towerops.net - TOWEROPS_AGENT_TOKEN=your-agent-token-here @@ -125,17 +122,6 @@ docker build -t towerops-agent . ## Troubleshooting -### Agent Crashes with Segmentation Fault (Exit Code 139) - -This typically occurs when the container doesn't have the `NET_RAW` capability required for ICMP ping: - -```yaml -cap_add: - - NET_RAW -``` - -Add this to your `docker-compose.yml` under the agent service. Without this capability, the agent will crash when attempting health checks. - ### Agent Not Connecting - Verify the API URL is correct (accepts http://, https://, ws://, or wss://) diff --git a/docker-compose.example.yml b/docker-compose.example.yml index 08d5d0a..689d630 100644 --- a/docker-compose.example.yml +++ b/docker-compose.example.yml @@ -4,10 +4,6 @@ services: container_name: towerops-agent restart: unless-stopped - # Required for ICMP ping health checks - cap_add: - - NET_RAW - environment: # Required: Agent authentication token (from Towerops web UI) # Get this from: Organization > Agents > Create New Agent