Daniel Golle
|
42a6217d42
jail: consider PATH for argv in OCI container
|
3 lat temu |
Daniel Golle
|
9d0f831834
jail: fix segfault with len(uidmap/gidmap) > 1
|
3 lat temu |
Rosen Penev
|
aed7fb3cf2
procd: fix compilation with uClibc-ng
|
3 lat temu |
Daniel Golle
|
ea7a790f21
jail: add support for running OCI bundle
|
3 lat temu |
Daniel Golle
|
b9b39e2061
jail: handle containers seperately
|
4 lat temu |
Daniel Golle
|
1ab539b3a8
jail: add option to provide /dev/console to containers
|
4 lat temu |
Leonardo Mörlein
|
7e150f68e6
jail: unnamed jails can not have netns (fix segfault)
|
4 lat temu |
Leonardo Mörlein
|
2e738484c5
jail: SIGSEGV must not be forwarded to the child process
|
4 lat temu |
Daniel Golle
|
17e7ae769a
jail: don't load libpreload-seccomp.so if it doesn't exist
|
4 lat temu |
Daniel Golle
|
e2ed964f96
jail: don't fail unless requirejail is set
|
4 lat temu |
Daniel Golle
|
d200b70e5d
jail: include /etc/nsswitch.conf in jail for glibc.
|
4 lat temu |
Daniel Golle
|
a4cc165a9f
jail: always mount /dev as additional tmpfs
|
4 lat temu |
Daniel Golle
|
a4d644228f
jail: replace /etc/resolv.conf with symlink in extroot+overlay
|
4 lat temu |
Daniel Golle
|
4953b7c4c0
jail: mount /sys read-only
|
4 lat temu |
Daniel Golle
|
511fd97b53
jail: make /proc more secure
|
4 lat temu |
Daniel Golle
|
32c717e18e
jail: only mess with rootfs if CLONE_NEWNS was set
|
4 lat temu |
Daniel Golle
|
28a06e55cd
jail: add support for (ram-)overlayfs
|
4 lat temu |
Daniel Golle
|
6f3dbd283b
jail: add support for userns and cgroupsns
|
4 lat temu |
Daniel Golle
|
2188d81fdd
jail: add support for launching extroot containers
|
4 lat temu |
Daniel Golle
|
77a6782d6e
jail: mount-bind /etc/resolv.conf for non-netns jails
|
4 lat temu |
Daniel Golle
|
81b88b1c63
jail: more strict mount options for /tmp/resolv.conf.d/
|
4 lat temu |
Daniel Golle
|
ba69639872
jail: create resolv.conf symlink for netns jails
|
4 lat temu |
Daniel Golle
|
58c12f74d8
jail: add basic support for network namespaces
|
4 lat temu |
Daniel Golle
|
5ed190aae1
jail: remove accidentally added lines
|
4 lat temu |
Daniel Golle
|
52c5c1980b
jail: set user and group inside jail
|
4 lat temu |
Rosen Penev
|
fa5ce1c2b4
procd: Replace strerror(errno) with %m.
|
6 lat temu |
John Crispin
|
cdc3dab3cd
ujail: fix signal forwarding
|
7 lat temu |
Etienne CHAMPETIER
|
f706903229
ujail: add basic /dev files
|
7 lat temu |
Felix Fietkau
|
a076697047
ujail: send SIGKILL to jail process if SIGTERM fails
|
7 lat temu |
Etienne CHAMPETIER
|
b8eb07c22f
jail: don't always CLONE_NEWUTS
|
8 lat temu |