diff options
author | Lennart Poettering <lennart@poettering.net> | 2023-04-26 16:55:42 +0200 |
---|---|---|
committer | Yu Watanabe <watanabe.yu+github@gmail.com> | 2023-04-27 12:28:50 +0900 |
commit | e76b3d4ed2d716446f3670d40cfdcbb145cb52d7 (patch) | |
tree | bee560456d5bf99f443cd52d872b1b0bbaf7dac0 /mkosi.conf.d | |
parent | a02287eab3e883d7d2d8961e9651f5fef9a9eeac (diff) | |
download | systemd-e76b3d4ed2d716446f3670d40cfdcbb145cb52d7.tar.gz |
units: restrict hugepages fs a bit
suid binaries and device nodes should not be placed there, hence forbid
it.
Of all the API VFS we mount from PID 1 or via a unit file this one is
the only one where we didn't add MS_NODEV/MS_NOSUID. Let's address that,
since there's really no reason why device nodes or suid binaries would
be placed in hugetlbfs.
Diffstat (limited to 'mkosi.conf.d')
0 files changed, 0 insertions, 0 deletions