I basically know about the kernel capabilieties. They can be set for Processes to give them rights to overgo the DAC-rights, do kills and so on. but can they be set for different executable files by hand or just when a process is running? are there also ways to give caps to users or can they just be associated with executables/processes?