summaryrefslogtreecommitdiffstats
path: root/units/systemd-machined.service.in (follow)
Commit message (Expand)AuthorAgeFilesLines
* units: set ProtectKernelLogs=yes on relevant unitsKevin Kuehler2019-11-151-0/+1
* meson: allow WatchdogSec= in services to be configuredZbigniew Jędrzejewski-Szmek2019-10-251-1/+1
* units: enable ProtectHostname=yesTopi Miettinen2019-02-201-0/+1
* units: set NoNewPrivileges= for all long-running servicesLennart Poettering2018-11-121-7/+8
* units: switch from system call blacklist to whitelistLennart Poettering2018-06-141-1/+2
* Add SPDX license headers to unit filesZbigniew Jędrzejewski-Szmek2017-11-191-0/+2
* units: prohibit all IP traffic on all our long-running services (#6921)Lennart Poettering2017-10-041-0/+1
* units: set LockPersonality= for all our long-running services (#6819)Lennart Poettering2017-09-141-0/+1
* units: use https for the freedesktop url (#6227)AsciiWolf2017-06-291-1/+1
* machined: add RequiresMountsFor=/var/lib/machinesFelipe Sateler2017-06-211-0/+1
* units: make use of @reboot and @swap in our long-running service SystemCallFi...Lennart Poettering2017-02-091-1/+1
* units: set SystemCallArchitectures=native on all our long-running servicesLennart Poettering2017-02-091-0/+1
* units: further lock down our long-running servicesLennart Poettering2016-09-251-1/+3
* units: machined needs mount-related syscalls for its namespacing operationsLennart Poettering2016-06-211-1/+1
* units: tighten system call filters a bitLennart Poettering2016-06-131-1/+1
* units: add a basic SystemCallFilter (#3471)Topi Miettinen2016-06-091-0/+1
* units: enable MemoryDenyWriteExecute (#3459)Topi Miettinen2016-06-081-0/+1
* machined: add CAP_MKNOD to capabilities to run with (#3116)Lennart Poettering2016-04-251-1/+1
* units: increase watchdog timeout to 3min for all our servicesLennart Poettering2015-09-291-1/+1
* units: add more caps to machinedLennart Poettering2015-07-271-1/+1
* machined: move logic for bind mounting into containers from machinectl to mac...Lennart Poettering2015-02-171-6/+5
* Revert "units: add SecureBits"Lennart Poettering2015-02-111-1/+0
* units: add SecureBitsTopi Miettinen2015-02-111-0/+1
* machined/machinectl: add logic to show list of available imagesLennart Poettering2014-12-191-1/+1
* machinectl: show /etc/os-release information of container in status outputLennart Poettering2014-07-031-1/+1
* units: add missing caps so that GetAddresses() can workLennart Poettering2014-06-191-1/+1
* units: fix minor typoLennart Poettering2014-06-061-1/+1
* core: rename ReadOnlySystem= to ProtectSystem= and add a third value for also...Lennart Poettering2014-06-041-2/+2
* core: add new ReadOnlySystem= and ProtectedHome= settings for service unitsLennart Poettering2014-06-031-0/+2
* core: enable PrivateNetwork= for a number of our long running services where ...Lennart Poettering2014-03-191-0/+1
* units: make use of PrivateTmp=yes and PrivateDevices=yes for all our long-run...Lennart Poettering2014-03-191-0/+2
* units: systemd-machined now exits on idle and we shouldn't try to restart it ...Lennart Poettering2013-12-231-2/+0
* event: hook up sd-event with the service watchdog logicLennart Poettering2013-12-111-0/+1
* machined: run machined at minimal capabilitiesLennart Poettering2013-07-191-0/+1
* units: add references to bus API documentation to logind+machinedLennart Poettering2013-07-191-1/+1
* machined: split out machine registration stuff from logindLennart Poettering2013-07-021-0/+19