Daniel Golle
|
1ab539b3a8
jail: add option to provide /dev/console to containers
|
4 years ago |
Leonardo Mörlein
|
7e150f68e6
jail: unnamed jails can not have netns (fix segfault)
|
4 years ago |
Leonardo Mörlein
|
2e738484c5
jail: SIGSEGV must not be forwarded to the child process
|
4 years ago |
Daniel Golle
|
17e7ae769a
jail: don't load libpreload-seccomp.so if it doesn't exist
|
4 years ago |
Daniel Golle
|
e2ed964f96
jail: don't fail unless requirejail is set
|
4 years ago |
Daniel Golle
|
d200b70e5d
jail: include /etc/nsswitch.conf in jail for glibc.
|
4 years ago |
Daniel Golle
|
a4cc165a9f
jail: always mount /dev as additional tmpfs
|
4 years ago |
Daniel Golle
|
a4d644228f
jail: replace /etc/resolv.conf with symlink in extroot+overlay
|
4 years ago |
Daniel Golle
|
4953b7c4c0
jail: mount /sys read-only
|
4 years ago |
Daniel Golle
|
511fd97b53
jail: make /proc more secure
|
4 years ago |
Daniel Golle
|
b275a6299e
instance: harmonize instance API
|
4 years ago |
Daniel Golle
|
32c717e18e
jail: only mess with rootfs if CLONE_NEWNS was set
|
4 years ago |
Daniel Golle
|
28a06e55cd
jail: add support for (ram-)overlayfs
|
4 years ago |
Daniel Golle
|
6f3dbd283b
jail: add support for userns and cgroupsns
|
4 years ago |
Daniel Golle
|
2188d81fdd
jail: add support for launching extroot containers
|
4 years ago |
Daniel Golle
|
77a6782d6e
jail: mount-bind /etc/resolv.conf for non-netns jails
|
4 years ago |
Kevin Darbyshire-Bryant
|
c30b23e365
seccomp: fix resource leak
|
4 years ago |
Kevin Darbyshire-Bryant
|
bcb86554f1
instance: add 'requirejail' attribute
|
4 years ago |
Ondřej Votava
|
00aafc4f43
procd: show process's exit code
|
4 years ago |
Petr Štetiar
|
856b5f8be0
state: fix reboot causing shutdown inside LXC container
|
4 years ago |
Petr Štetiar
|
b44417c20c
instance: provide error feedback if ujail binary is missing
|
4 years ago |
Daniel Golle
|
81b88b1c63
jail: more strict mount options for /tmp/resolv.conf.d/
|
4 years ago |
Daniel Golle
|
ba69639872
jail: create resolv.conf symlink for netns jails
|
4 years ago |
Daniel Golle
|
58c12f74d8
jail: add basic support for network namespaces
|
4 years ago |
Daniel Golle
|
0a11aa405d
instance: Fix instance_config_move_strdup() function
|
4 years ago |
Petr Štetiar
|
44dd941981
instance: fix typo in error message
|
4 years ago |
Petr Štetiar
|
153820c764
instance: fix pidfile and seccomp attributes double free
|
4 years ago |
Daniel Golle
|
a5af33ce9a
instance: strdup string attributes
|
4 years ago |
Petr Štetiar
|
d2e8bf6ef7
system: watchdog_set: fix misleading indentation
|
4 years ago |
Petr Štetiar
|
9814807bd7
system: sysupgrade: fix possibly misleading error
|
4 years ago |