projects
/
project
/
procd.git
/ search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
uxc: move mountpoint of persistent config to /var/run/uxc
2021-08-30
Daniel Golle
uxc: move mountpoint of persistent config to /var/run/uxc
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
jail: protect against strcat buffer overflows
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
jail: preload: avoid NULL-dereference in case things...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
trace: handle open() return value and make sure string...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
trace: free string returned by blobmsg_format_json_indent()
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
uxc: free string returned by blobmsg_format_json_indent()
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
utils: make sure read() string is 0 terminated
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
jail: use portable sizeof(void *)
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
jail: check return value when opening console
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
jail: return to hook callback instead of just calling it
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-24
Daniel Golle
jail: devices: create parent folder when creating devices
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-15
Daniel Golle
uxc: support config in uvol
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-15
Daniel Golle
uxc: fix help output
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-15
Daniel Golle
uxc: fix a bunch of issues discovered by Coverity
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-15
Daniel Golle
service: make sure string read is null terminated
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-15
Daniel Golle
system: fix issues reported by Coverity
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-14
Daniel Golle
ujail-console: add missing error handling discovered...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-14
Daniel Golle
jail: fix several issues discovered by Coverity
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-14
Daniel Golle
hotplug-dispatch: yet another rare memory leak disovered...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-13
Daniel Golle
system: make rootfs type accessible through board call
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-05
Daniel Golle
hotplug-dispatch: fix rare memory leaks in error paths
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
jail: cgroups-bpf: fix compile with musl 1.2
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
jail: don't ignore return value of write()
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
jail: cgroups: replace wrongly used assert()
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
hotplug-dispatch: replace wrongly used assert()
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
uxc: always handle asprintf() return value
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
hotplug-dispatch: don't ignore asprintf() return value
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
jail: ignore return value when creating default /dev...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
jail: don't ignore return value of seteuid()
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-08-04
Daniel Golle
jail: cgroups-bpf: don't use sys/reg.h when building...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-24
Daniel Golle
uxc: resolve volume UUIDs by name of UCI fstab section
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-24
Daniel Golle
uxc: don't restart containers when mount shows up
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-18
Daniel Golle
jail: refactor directory handling for rootfs and overlaydir
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-17
Daniel Golle
jail: make use of realpath() for rootfs and overlaydir
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-15
Daniel Golle
uxc: check for required blockd mounts
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-15
Daniel Golle
jail: open() extroot folder before mounting
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-15
Daniel Golle
jail: allow rootfs to be a symbolic link
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-15
Daniel Golle
jail: increase max additional env records to 64
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-15
Daniel Golle
jail: do not hack /etc/resolv.conf on container rootfs
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-15
Daniel Golle
uxc: implement support for rootfs overlay in containers
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-07-10
Daniel Golle
jail: add support for cgroup devices as in OCI run...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-05-05
Gaurav Pathak
procd: Use /dev/console for serial console if exists
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-03-21
Gaurav Pathak
procd: Adding support to detect Pantavisor Container...
commit
|
commitdiff
|
tree
2021-03-19
Daniel Golle
trace: fix build on aarch64
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-03-19
Daniel Golle
jail/seccomp: add support for aarch64
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-03-07
Mathew McBride
inittab: detect active console from kernel if no console...
commit
|
commitdiff
|
tree
2021-03-07
Daniel Golle
utils: fix C style in header file
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-03-02
Rosen Penev
procd: fix compilation with newer musl
commit
|
commitdiff
|
tree
2021-02-23
Daniel Golle
system: expose if system was booted from initramfs
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-02-13
Daniel Golle
cosmetics: provide compatible system info on Aarch64
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-02-07
Daniel Golle
procd: add hotplug-call dispatcher
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-02-02
Daniel Golle
jail: cgroups: fix uninitialized variable
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-02-02
Daniel Golle
jail: only output BPF instr. table header if debugging
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2021-02-02
Daniel Golle
jail: remove duplicate check for hook file permissions
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-12-12
Daniel Golle
treewide: replace local mkdir_p implementations
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-12-09
Daniel Golle
jail: remove unreachable code
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-12-04
Daniel Golle
early: fall-back to run ubus as root if user can't...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-12-01
Daniel Golle
jail: improve seccomp log output
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-30
Daniel Golle
jail: seccomp: improve code readability
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-30
Daniel Golle
jail: always call cgroups_free()
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-30
Daniel Golle
jail: improve seccomp BPF generator
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: properly initialize timens_fd
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: enter existing cgroups namespace if given
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: don't attempt to mount /sys with noatime
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: fix typo in usage output
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: seteuid before clone(CLONE_NEWUSER)
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: don't fail if can't mount-bind /etc/resolv.conf
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: don't use NULL arguments for mount syscall
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: relax /etc/resolv.conf creation
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: fix and simplify userns uid/gid maps from OCI
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: fix segfault on missing name and refactor
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-27
Daniel Golle
jail: leak less memory
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-22
Daniel Golle
jail: add 'debug' extern variable to preload_seccomp
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-22
Daniel Golle
uxc: also delete procd runtime state on 'delete'
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-22
Daniel Golle
uxc: fix incomplete commit
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-21
Daniel Golle
jail: cgroup hack: rewrite cgroup -> cgroup2
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-21
Daniel Golle
seccomp: silence 'unknown syscall' warnings
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-21
Daniel Golle
uxc: make force-delete kill container process
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-17
Daniel Golle
trace: switch to OCI seccomp JSON output
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-15
Daniel Golle
seccomp: switch to new OCI compliant parser
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-15
Daniel Golle
seccomp: specifying architectures is optional
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-11-07
Daniel Golle
jail: fix capabilities
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-28
Daniel Golle
uxc: mimic runc cmdline by using getopt_long
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-28
Daniel Golle
jail: don't fail if maskedPath cannot be found
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-28
Daniel Golle
jail: add support for absolute root path in OCI spec
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-28
Daniel Golle
jail: relax seccomp unknown syscall handling
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-28
Daniel Golle
jail: handle mount propagation flags
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-28
Daniel Golle
jail: add option for pidfile
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-28
Daniel Golle
jail: guard boolean blobmsg attributes
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-23
Daniel Golle
ujail: elf: work around GCC bug on MIPS64
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-22
Daniel Golle
jail: mount more stuff read-only
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-21
Daniel Golle
jail: capabilities: apply in two phases
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-19
Daniel Golle
jail: nuke old capabilities code in favour of reusing...
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-19
Daniel Golle
instance: actually wire up capabilities filename
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-19
Daniel Golle
jail: adapt to new ubus socket path
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-10-19
Daniel Golle
early: run ubusd non-root as user ubus, group ubus
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-08-13
Daniel Golle
cgroups: memory controller fixes
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-08-13
Daniel Golle
cgroups: restrict allowed keys in 'unified' section
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
2020-08-10
Thomas Petazzoni
initd/init: add minimal SELinux policy loading support
commit
|
commitdiff
|
tree
2020-08-06
Daniel Golle
jail: fix freeing cgroups avl
Signed-off-by: Daniel Golle <
daniel@makrotopia.org
>
commit
|
commitdiff
|
tree
next