summaryrefslogtreecommitdiffstats
path: root/src/nspawn (follow)
Commit message (Expand)AuthorAgeFilesLines
* nspawn: make sure --private-users-ownership=no and =off work the same wayLennart Poettering4 days1-1/+2
* nspawn: improve error message when we cannot look into a container tree due t...Lennart Poettering4 days1-3/+6
* nspawn: don't try to unregister a machine we never registeredLennart Poettering4 days1-1/+1
* nspawn: improve log message on bad incoming sd_notify() messageLennart Poettering8 days1-1/+1
* nspawn: fix userns_mkdir() invocationLennart Poettering8 days1-4/+3
* nspawn: Include arm_fadvise64_64 in syscall allow_listMichał Górny14 days1-0/+1
* nspawn: --private-users-ownership= value is called 'chown', not 'own'Lennart Poettering2024-11-151-1/+2
* nspawn: ignore failure in creating /dev/net/tun when --private-network is uns...Yu Watanabe2024-11-141-6/+19
* nspawn: split out copy_devnode_one() and bind_mount_devnode() from copy_devno...Yu Watanabe2024-11-141-70/+104
* nspawn: silence warning about failure in getting fuse versionYu Watanabe2024-11-141-1/+2
* nspawn: fix indentation of run_container() parameter listLennart Poettering2024-11-121-9/+9
* tree-wide: replace for loop with FOREACH_ELEMENT or FOREACH_ARRAY macros (#34...Integral2024-10-264-48/+40
* tree-wide: use isatty_safe() everywhereLennart Poettering2024-10-251-3/+3
* Merge pull request #34783 from keszybz/man-nspawn-private-usersZbigniew Jędrzejewski-Szmek2024-10-181-1/+1
|\
| * tree-wise: use "lightweight" spellingZbigniew Jędrzejewski-Szmek2024-10-181-1/+1
* | fdset: optionally, close remaining fds asynchronouslyLennart Poettering2024-10-171-1/+1
|/
* tree-wide: replace reallocarray() with GREEDY_REALLOC()Yu Watanabe2024-10-083-32/+15
* tree-wide: drop doubled empty linesYu Watanabe2024-10-071-1/+0
* fs-util: rename laccess to access_nofollowMike Yuan2024-10-051-1/+1
* seccomp-util: include @sandbox in @defaultMickaël Salaün2024-09-271-1/+0
* tree-wide: drop unnecessary 'struct'Yu Watanabe2024-09-181-1/+1
* nspawn: fix typoYu Watanabe2024-09-161-1/+1
* tree-wide: make sigprocmask() changes more automaticLennart Poettering2024-09-131-0/+4
* nspawn: use ERRNO_IS_NEG_NOT_SUPPORTED() at one more placeYu Watanabe2024-09-091-1/+1
* nspawn: sync DeviceAllow= setting with systemd-nspawn@.serviceYu Watanabe2024-09-091-1/+1
* Merge pull request #34258 from yuwata/nspawn-volatile-uLennart Poettering2024-09-093-14/+57
|\
| * nspawn: only remount /usr/ with idmap when --volatile=yesYu Watanabe2024-09-061-4/+7
| * nspawn: mount /var/ after remount_idmap() when --volatile=stateYu Watanabe2024-09-063-4/+44
| * nspawn: use strv_extend() and friends to build directories passed to remount_...Yu Watanabe2024-09-061-9/+9
* | nspawn: enable FUSE in containersLuke T. Shumaker2024-09-073-4/+109
* | nspawn: register_machine() and allocate_scope() bools to flagsLuke T. Shumaker2024-09-073-14/+60
* | nspawn: re-flow comments that are wrapped weirdLuke T. Shumaker2024-09-071-13/+6
* | nspawn: convert copy_devnodes():devnodes from nulstr to strvLuke T. Shumaker2024-09-071-12/+14
* | nspawn: fix the comment about which namespaces outer_child is inLuke T. Shumaker2024-09-071-5/+13
* | Merge pull request #34280 from yuwata/cleanupsDaan De Meyer2024-09-061-1/+1
|\ \
| * | nspawn: fix indentationYu Watanabe2024-09-061-1/+1
| |/
* / nspawn: refuse to bind mount device node from host when --private-users= is s...Yu Watanabe2024-09-061-5/+5
|/
* Merge pull request #34090 from DaanDeMeyer/cow-fixYu Watanabe2024-09-051-1/+2
|\
| * copy: Introduce COPY_NOCOW_AFTER and use it when copying imagesDaan De Meyer2024-09-041-4/+3
| * Revert "tree-wide: Don't explicity disable copy-on-write when copying images"Daan De Meyer2024-09-041-2/+4
* | socket-util: make recvmsg_safe() handle MSG_TRUNC tooMike Yuan2024-09-041-8/+8
|/
* tree-wide: drop msg argument for DEFINE_CONFIG_PARSE() macro and friendsYu Watanabe2024-09-011-4/+4
* user-record: add helper that checks if a user record is root or the nobody userLennart Poettering2024-08-281-2/+2
* nspawn: propagate SSH authorized keys when binding user into contaier via --b...Lennart Poettering2024-08-281-4/+7
* Revert "nspawn: Allow specifying custom init program"Daan De Meyer2024-08-223-38/+10
* Revert "nspawn: fix settings leak for init parameter"Daan De Meyer2024-08-221-1/+0
* tree-wide: use isatty_safe() moreLennart Poettering2024-08-201-3/+3
* nspawn: Fix help typoDr. David Alan Gilbert2024-08-141-1/+1
* nspawn: Assume unified cgroup hierarchy if there's no systemd in the imageDaan De Meyer2024-08-133-13/+27
* nspawn: fix settings leak for init parameterLuca Boccassi2024-08-081-0/+1