{
    "mode": "man",
    "parameter": "cgrulesengd",
    "section": "8",
    "url": "https://www.chedong.com/phpMan.php/man/cgrulesengd/8/json",
    "generated": "2026-10-04T18:15:09Z",
    "synopsis": "cgrulesengd [options]",
    "sections": {
        "NAME": {
            "content": "cgrulesengd - control group rules daemon\n\n",
            "subsections": []
        },
        "SYNOPSIS": {
            "content": "cgrulesengd [options]\n\n",
            "subsections": []
        },
        "DESCRIPTION": {
            "content": "cgrulesengd  is  a  daemon,  which  distributes processes to control groups. When any process\nchanges its effective UID or GID, cgrulesengd inspects the list  of  rules  loaded  from  the\ncgrules.conf  file  and files in cgrules.d (see cgrules.d (5) for potential conflicts) direc‐\ntory and moves the process to the appropriate control group.\n\nThe list of rules is read during the daemon startup and cached in the daemon's  memory.   The\ndaemon  reloads  the  list  of rules when it receives SIGUSR2 signal.  The daemon reloads the\nlist of templates when it receives SIGUSR1 signal.\n\nThe daemon opens a standard unix socket to receive 'sticky' requests from cgexec.\n\n",
            "subsections": []
        },
        "OPTIONS": {
            "content": "",
            "subsections": [
                {
                    "name": "-h|--help",
                    "content": "Display help.\n"
                },
                {
                    "name": "-f <path>|--logfile=<path>",
                    "content": "Write log messages to the given log file. When '-' is used as <path>, log messages are\nwritten to the standard output. If '-f' and '-s' are used together, the logs are  sent\nto both destinations.\n\n",
                    "flag": "-f"
                },
                {
                    "name": "-s[facility]|--syslog=[facility]",
                    "content": "Write  log  messages  to  syslog. The default facility is DAEMON. If '-f' and '-s' are\nused together, the logs are sent to both destinations.\n"
                },
                {
                    "name": "-n|--nodaemon",
                    "content": "Don't fork the daemon, stay in the foreground.\n"
                },
                {
                    "name": "-v|--verbose",
                    "content": "Display more log messages. This option can be used three times to enable more  verbose\nlog messages.\n"
                },
                {
                    "name": "-q|--quiet",
                    "content": "Display less log messages.\n"
                },
                {
                    "name": "-Q|--nolog",
                    "content": "Disable logging.\n"
                },
                {
                    "name": "-d|--debug",
                    "content": "Equivalent  to  '-nvvvf  -',  i.e. don't fork the daemon, display all log messages and\nwrite them to the standard output.\n"
                },
                {
                    "name": "-u <user>|--socket-user=<user>",
                    "content": "-g <group>|--socket-group=<group> Set the owner of cgrulesengd  socket.  Assumes  that\ncgexec  runs  with  proper  suid permissions so it can write to the socket when cgexec\n--sticky is used.\n\n",
                    "flag": "-u"
                }
            ]
        },
        "ENVIRONMENT VARIABLES": {
            "content": "CGROUPLOGLEVEL\ncontrols verbosity of the tool. Allowed values are DEBUG, INFO, WARNING or ERROR.\n\n",
            "subsections": []
        },
        "FILES": {
            "content": "",
            "subsections": [
                {
                    "name": "/etc/cgrules.conf",
                    "content": "default libcgroup configuration file\n\n"
                },
                {
                    "name": "/etc/cgrules.d",
                    "content": "default libcgroup configuration files directory\n\n"
                },
                {
                    "name": "/etc/cgconfig.conf",
                    "content": "default templates file\n\n"
                },
                {
                    "name": "/etc/cgconfig.d",
                    "content": "default templates directory\n\n"
                }
            ]
        },
        "SEE ALSO": {
            "content": "cgrules.conf (5), cgrules.d (5)\n\nLinux                                        2009-02-18                               CGRULESENGD(8)",
            "subsections": []
        }
    },
    "summary": "cgrulesengd - control group rules daemon",
    "flags": [
        {
            "flag": "",
            "long": null,
            "arg": null,
            "description": "Display help."
        },
        {
            "flag": "-f",
            "long": null,
            "arg": null,
            "description": "Write log messages to the given log file. When '-' is used as <path>, log messages are written to the standard output. If '-f' and '-s' are used together, the logs are sent to both destinations."
        },
        {
            "flag": "",
            "long": null,
            "arg": null,
            "description": "Write log messages to syslog. The default facility is DAEMON. If '-f' and '-s' are used together, the logs are sent to both destinations."
        },
        {
            "flag": "",
            "long": null,
            "arg": null,
            "description": "Don't fork the daemon, stay in the foreground."
        },
        {
            "flag": "",
            "long": null,
            "arg": null,
            "description": "Display more log messages. This option can be used three times to enable more verbose log messages."
        },
        {
            "flag": "",
            "long": null,
            "arg": null,
            "description": "Display less log messages."
        },
        {
            "flag": "",
            "long": null,
            "arg": null,
            "description": "Disable logging."
        },
        {
            "flag": "",
            "long": null,
            "arg": null,
            "description": "Equivalent to '-nvvvf -', i.e. don't fork the daemon, display all log messages and write them to the standard output."
        },
        {
            "flag": "-u",
            "long": null,
            "arg": null,
            "description": "-g <group>|--socket-group=<group> Set the owner of cgrulesengd socket. Assumes that cgexec runs with proper suid permissions so it can write to the socket when cgexec --sticky is used."
        }
    ],
    "examples": [],
    "see_also": []
}