]> git.proxmox.com Git - mirror_lxc.git/history - src/lxc/conf.c
tree-wide: use lxc_drop_groups() instead of lxc_setgroups(0, NULL)
[mirror_lxc.git] / src / lxc / conf.c
2021-02-05 Christian Braunertree-wide: use lxc_drop_groups() instead of lxc_setgrou...
2021-02-04 Stéphane GraberMerge pull request #3651 from brauner/2021-02-04/fixes
2021-02-04 Christian Braunertree-wide: s/dfd_root_host/dfd_host/g
2021-02-04 Christian Braunertree-wide: s/mntpt_fd/dfd_mnt/g
2021-02-04 Christian Braunertree-wide: s/dev_mntpt_fd/dfd_dev/g
2021-02-04 Christian Braunerconf: restricted fd-only lxc_fill_autodev()
2021-02-04 Christian Braunerconf: start stashing dfd to host's / during container...
2021-02-04 Christian Braunerconf: fix lxc_setup_dev_console()
2021-02-04 Christian Braunercgroups: fix cgroup mounting
2021-02-03 Stéphane GraberMerge pull request #3650 from brauner/2021-02-03/fixes_1
2021-02-03 Christian Braunerconf: refactor transient procfs mounting
2021-02-03 Christian Braunerconf: restrict open call in lxc_mount_rootfs()
2021-02-03 Christian Braunerconf: make lxc_create_tmp_proc_mount() static
2021-02-03 Christian Braunerconf: coding style
2021-02-03 Stéphane GraberMerge pull request #3648 from brauner/2021-02-03/fixes
2021-02-03 Christian Braunerconf: fd-only devtps setup
2021-02-03 Christian Braunerconf: fd-only pivot root
2021-02-03 Christian Braunerconf: restrict open for lxc_mount_rootfs()
2021-02-03 Christian Braunerconf: fd-only operations in lxc_setup_dev_symlinks()
2021-02-03 Christian Braunerconf: harden open in lxc_fill_autodev()
2021-02-03 Christian Braunerconf: restrict open of dev/
2021-02-03 Christian Braunerconf: remove unnecessary syscall
2021-02-01 Stéphane GraberMerge pull request #3645 from brauner/2021-02-01/fixes_4
2021-02-01 Christian Braunerconf: use lxc_log_trace()
2021-01-27 Stéphane GraberMerge pull request #3636 from brauner/2021-01-27/fixes
2021-01-27 Christian Braunerconf: move proc and sys mountpoint creation int lxc_mou...
2021-01-27 Christian Braunerconf: coding style fixes
2021-01-27 Christian Braunerconf: fix coding style
2021-01-27 Christian BraunerMerge pull request #3634 from motiejus/mkdir-proc-sys
2021-01-27 Motiejus Jakštysmkdir -p /proc /sys on container startup
2021-01-22 Stéphane GraberMerge pull request #3629 from brauner/2021-01-22/static...
2021-01-22 Christian Braunertree-wide: fix some header inclusions
2021-01-22 Christian BraunerMerge pull request #3623 from cotequeiroz/seccomp
2021-01-22 Stéphane GraberMerge pull request #3628 from brauner/2021-01-22/fixes
2021-01-22 Christian Braunerconf: fix containers retaining CAP_NET_ADMIN
2021-01-09 Stéphane GraberMerge pull request #3615 from sirh3e/master
2021-01-04 Stéphane GraberMerge pull request #3614 from brauner/2021-01-04/fixes
2021-01-04 Christian Braunerconf: fix CAP_NET_ADMIN-based mount handling
2021-01-04 Christian Braunerconf: add new capabilities CAP_{BLOCK_SUSPEND,PERFMON...
2021-01-04 Christian Braunerconf: define missing capabilities
2020-12-28 Stéphane GraberMerge pull request #3608 from brauner/2020-12-27/no_rootfs
2020-12-27 Christian Braunercgroup2: move bpf device cgroup program to struct cgrou...
2020-12-14 Stéphane GraberMerge pull request #3601 from brauner/2020-12-14/bugfixes
2020-12-14 Christian Braunerconf: fix block-device based rootfs mounting
2020-12-14 Christian BraunerMerge pull request #3600 from zhenr667/3091
2020-12-13 zhenr667unmounted proc/sys/net if dropping CAP_NET_ADMIN
2020-12-10 Stéphane GraberMerge pull request #3595 from brauner/2020-12-08/fixes
2020-12-10 Christian Braunerconf: fix unchecked return value
2020-11-21 Stéphane GraberMerge pull request #3586 from tenforward/japanese
2020-11-16 Stéphane GraberMerge pull request #3581 from brauner/2020-11-16/fixes
2020-11-16 Christian Braunerconf: switch to fd_to_fd() when copying mountinfo
2020-11-05 Stéphane GraberMerge pull request #3574 from Drachenfels-GmbH/seccomp...
2020-11-05 Ruben JensterAdd missing free for monitor_pivot_dir.
2020-10-28 Stéphane GraberMerge pull request #3568 from brauner/2020-10-28/fixes
2020-10-28 Christian Braunerconf: check snprint return value
2020-10-20 Stéphane GraberMerge pull request #3559 from brauner/2020-10-20/fixes
2020-10-20 Christian Braunerconf: account for early return when sending devpts fd
2020-10-20 Stéphane GraberMerge pull request #3558 from brauner/2020-10-20/fixes
2020-10-20 Christian Braunerconf: always send response to parent waiting for devptfs_fd
2020-10-19 Stéphane GraberMerge pull request #3556 from brauner/2020-10-19/fixes
2020-10-19 Christian Braunerstart: improve devpts fd sending
2020-08-28 Christian BraunerMerge pull request #3531 from JingWoo/cleancode
2020-08-28 wujingremove useless parameters
2020-08-12 Stéphane GraberMerge pull request #3518 from brauner/2020-08-12/fixes
2020-08-12 Christian Braunerlsm: remove the need for atomic operations
2020-08-11 Stéphane GraberMerge pull request #3517 from brauner/2020-08-10/fixes_2
2020-08-11 Christian Braunerlsm: rework lsm handling
2020-08-10 Stéphane GraberMerge pull request #3514 from brauner/2020-08-10/fixes
2020-08-10 Christian Braunerterminal: harden terminal allocation
2020-08-10 Christian Braunerconf: move /dev setup to be file descriptor based
2020-08-10 Stéphane GraberMerge pull request #3513 from brauner/2020-08-09/openat2
2020-08-09 Christian Braunerconf: harden lxc_fill_autodev() via save_mount_beneath_at()
2020-08-09 Christian Braunerconf: make use of stashed container mountpoint fd in...
2020-08-09 Christian Braunerconf: stash file descriptor to root mountpoint in struc...
2020-08-09 Christian Braunerutils: introduce safe_mount_beneath_at()
2020-08-09 Christian Braunerconf: switch mount_autodev() to new safe_mount_beneath...
2020-08-09 Christian Braunersyscalls: add openat2()
2020-08-05 Stéphane GraberMerge pull request #3506 from brauner/2020-08-05/safe_n...
2020-08-05 Christian Braunerconf: use openat() instead of open_tree()
2020-08-05 Stéphane GraberMerge pull request #3505 from brauner/2020-08-05/safe_n...
2020-08-05 Christian Braunerterminal: safely allocate pts devices from inside the...
2020-08-04 Stéphane GraberMerge pull request #3504 from brauner/2020-08-04/fixes
2020-08-03 Christian Braunerconf: ensure that the idmap pointer itself is freed
2020-07-23 Stéphane GraberMerge pull request #3496 from brauner/2020-07-18/mount_pid
2020-07-23 Christian Braunermount_utils: add mount utils
2020-07-22 Stéphane GraberMerge pull request #3492 from brauner/2020-07-18/visibi...
2020-07-21 Christian Braunertree-wide: hide further unnecessary symbols
2020-07-06 Stéphane GraberMerge pull request #3479 from brauner/2020-07-06/fixes
2020-07-06 Christian Brauneropenpty: improve implementation and handling of platfor...
2020-07-05 Stéphane GraberMerge pull request #3477 from brauner/2020-07-05/fixes
2020-07-05 Christian Braunertree-wide: s/pts/pty/g
2020-07-05 Christian Braunertree-wide: s/ptmx/ptx/g
2020-06-26 Stéphane GraberMerge pull request #3461 from brauner/2020-06-25/time_n...
2020-06-25 Christian Braunerlxc: add time namespace support
2020-06-18 Christian Braunertree-wide: wipe references to questionable apis from...
2020-06-17 Christian Braunertree-wide: use "ptmx" and "pts" as terminal terms
2020-06-11 Stéphane GraberMerge pull request #3446 from brauner/2020-06-10/fixes_2
2020-06-11 Christian Braunerconf: kill old chown_mapped_root()
2020-06-11 Christian Braunerconf: add some more logging to userns_exec_mapped_root()
2020-06-11 Christian Braunerconf: always use target_fd in userns_exec_mapped_root()
next