| Commit message (Collapse) | Author | Age | Files | Lines |
| |
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
| |
The methods published by the example have a reply in the signature, but
the code was not sending any, so the client gets stuck waiting for a
response that doesn't arrive. Echo back the input string.
Update the object path to follow what would be the canonical format.
Request a service name on the bus, so that the code can be dropped in a
service and it can be dbus-activatable. It also makes it easier to see
on busctl list.
|
| |
|
| |
|
|
|
|
|
| |
So we're able to tell from the introspection data that the method
doesn't reply.
|
| |
|
|\
| |
| | |
network: clarify relationship between RA flags and DHCPv6 modes
|
| |
| |
| |
| |
| | |
Just setting DHCP=ipv6 is not enough to get DHCPv6 working without RA.
The WithoutRA option must also be changed from its default of "no".
|
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| | |
In the documentation, using the term "managed" for both the RA flag and
the DHCPv6 mode is confusing because the mode is referred to as
"solicit" both in the official DHCPv6 documentation (see RFC 8415) and
in the WithoutRA option.
Furthermore, calling the other RA flag "other information" or "other
address configuration" is confusing because its official name is simply
"other configuration" (see RFC 4861 and RFC 5175) and it isn't used to
assign IP addresses.
Rewrite the documentation for DHCPv6Client and WithoutRA to make it
clear that getting the "managed" RA flag triggers the same kind of DHCP
request as WithoutRA=solicit, whereas getting the "other configuration"
RA flag triggers the same kind of DHCP request as
WithoutRA=information-request.
|
|\ \
| |/
|/| |
Logind man and rules
|
| | |
|
| |
| |
| |
| | |
gdbus is an external program, so it makes sense to recommend busctl.
|
| | |
|
| |
| |
| |
| |
| | |
It's useful for installation scripts and suchlike.
Raised in https://bugzilla.redhat.com/show_bug.cgi?id=2079784#c9.
|
| | |
|
|/
|
|
|
|
| |
This makes it easier to only test a subset of tests without having
to specify them all on the command line:
meson test -C build --suite headers
|
|
|
|
| |
Closes #23262.
|
|
|
|
|
|
|
|
|
| |
roothash=/usrhash= on the kernel cmdline
It doesn't really care about the hash value passed (which is processed
by systemd-veritysetup-generator), but it does care about the fact that
it is set (and mounts the DM nodes /dev/mapper/usr + /dev/mapper/root in
that case).
|
|
|
|
|
|
|
|
|
| |
I don't know why this didn't occur to me earlier, but of course, it
*has* to be this data.
(This replaces some German prose about Berlin, that i guess only very
few people will get. With the new blob I think we have a much broader
chance of delivering smiles.)
|
|
|
|
|
|
| |
Let's merge the footnote with the overall explanation of where systemd
parses its options from and reword the section a bit to hopefully make
things a bit more clear.
|
|\
| |
| | |
import system credentials from sd-stub + qemu fw_cfg + kernel cmdline explicitly in PID 1
|
| | |
|
| | |
|
|\ \
| |/
|/| |
More cross-references in bootctl/systemctl man pages
|
| | |
|
|\ \
| |/
| | |
Extend the documentation for oomd a bit
|
| |
| |
| |
| | |
OOMPolicy remains valid, but let's push users for the userspace solution.
|
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| | |
The gist of the description is moved from systemd.resource-control
to systemd-oomd man page. Cross-references to OOMPolicy, memory.oom.group,
oomctl, ManagedOOMSwap and ManagedOOMMemoryPressure are added in all
places.
The descriptions are also more down-to-earth: instead of talking
about "taking action" let's just say "kill". We *might* add configuration
for different actions in the future, but we're not there yet, so let's
just describe what we do now.
|
| | |
|
| |
| |
| |
| |
| | |
* Some authenticators(like Yubikey) support credential algorithm other than ES256
* Introduce a new option so users can make use of it
|
|/
|
|
|
|
| |
We use authenticated encryption, and that deserves mention. This in
particular relevant as the fact they are authenticated makes the
credentials useful as initrd parameterization items.
|
|\
| |
| | |
tpm2: beef up tpm2 support checks
|
| | |
|
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
| | |
The assignments were partly simply incorrectly documented, partly changed
with 4d32507f5186a89e98093659fbbe386787a97b9f and partly missing.
Moreover kernel 5.17 now measures all initrds to PCR 9 on its own
(https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=f046fff8bc4c4d8f8a478022e76e40b818f692df)
Let's correct all this and bring it up-to-date.
And while we are at it extend the docs about this in systemd-stub, with
a new table that indicates which OS resource is protected by which PCR.
|
|/
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
fallback for systems lacking TPM2
This is supposed to be useful when generating credentials for immutable
initrd environments, where it is is relevant to support credentials even
on systems lacking a TPM2 chip.
With this, if `systemd-creds encrypt --with-key=auto-initrd` is used a
credential will be encrypted/signed with the TPM2 if it is available and
recognized by the firmware. Otherwise it will be encrypted/signed with
the fixed empty key, thus providing no confidentiality or authenticity.
The idea is that distributions use this mode to generically create
credentials that are as locked down as possible on the specific
platform.
|
| |
|
|\
| |
| | |
man: recommend that .network or friends should have a numeric prefix
|
| |
| |
| |
| |
| |
| | |
assigning delegated prefixes
Closes #23041.
|
| |
| |
| |
| | |
Closes #23105.
|
|/ |
|
|
|
|
| |
sysfs is a tree, hence let's a mode that allows showing it as such.
|
| |
|
| |
|
| |
|
|
|
|
| |
Gotta start somewhere.
|
| |
|
|
|
|
|
|
| |
We got documentation for sd-device for the first time with
b51f4eaf7b58f064092215cea9c6fc1c5af5646e, so let's celebrate by adding a
landing page that also explains the relationship with libudev.
|
|
|
|
| |
Based on linkchecker as usual.
|
|
|
|
|
| |
Inspired by 9fe20c3234. When the specifier is undocumented, it is really easy
to add a duplicate definition in a different place.
|