diff options
author | Nicolas Iooss | 2016-12-18 20:02:16 +0100 |
---|---|---|
committer | Nicolas Iooss | 2016-12-18 20:02:16 +0100 |
commit | 94484d635ee6b5fe337e581f139de317f792ebff (patch) | |
tree | fd5f90f6aea23413d09f63f03e09310e176cbf03 /0001-nspawn-don-t-hide-bind-tmp-mounts.patch | |
parent | c18a356669a37eb81bdd9b56f77a7ee8d1ae08c3 (diff) | |
download | aur-94484d635ee6b5fe337e581f139de317f792ebff.tar.gz |
systemd-selinux 232-6 update
Diffstat (limited to '0001-nspawn-don-t-hide-bind-tmp-mounts.patch')
-rw-r--r-- | 0001-nspawn-don-t-hide-bind-tmp-mounts.patch | 26 |
1 files changed, 26 insertions, 0 deletions
diff --git a/0001-nspawn-don-t-hide-bind-tmp-mounts.patch b/0001-nspawn-don-t-hide-bind-tmp-mounts.patch new file mode 100644 index 000000000000..a5336ece5730 --- /dev/null +++ b/0001-nspawn-don-t-hide-bind-tmp-mounts.patch @@ -0,0 +1,26 @@ +From 7ec42a45410cb27140292d85ebb0e4b6dcea5555 Mon Sep 17 00:00:00 2001 +From: Dave Reisner <dreisner@archlinux.org> +Date: Wed, 7 Dec 2016 13:45:48 -0500 +Subject: [PATCH] nspawn: don't hide --bind=/tmp/* mounts + +This is a v232-applicable version of upstream c9fd987279a462e. +--- + src/nspawn/nspawn-mount.c | 2 +- + 1 file changed, 1 insertion(+), 1 deletion(-) + +diff --git a/src/nspawn/nspawn-mount.c b/src/nspawn/nspawn-mount.c +index 115de64..2dabe2a 100644 +--- a/src/nspawn/nspawn-mount.c ++++ b/src/nspawn/nspawn-mount.c +@@ -382,7 +382,7 @@ int mount_all(const char *dest, + { "tmpfs", "/dev", "tmpfs", "mode=755", MS_NOSUID|MS_STRICTATIME, true, false, false }, + { "tmpfs", "/dev/shm", "tmpfs", "mode=1777", MS_NOSUID|MS_NODEV|MS_STRICTATIME, true, false, false }, + { "tmpfs", "/run", "tmpfs", "mode=755", MS_NOSUID|MS_NODEV|MS_STRICTATIME, true, false, false }, +- { "tmpfs", "/tmp", "tmpfs", "mode=1777", MS_STRICTATIME, true, true, false }, ++ { "tmpfs", "/tmp", "tmpfs", "mode=1777", MS_STRICTATIME, true, false, false }, + #ifdef HAVE_SELINUX + { "/sys/fs/selinux", "/sys/fs/selinux", NULL, NULL, MS_BIND, false, false, false }, /* Bind mount first */ + { NULL, "/sys/fs/selinux", NULL, NULL, MS_BIND|MS_RDONLY|MS_NOSUID|MS_NOEXEC|MS_NODEV|MS_REMOUNT, false, false, false }, /* Then, make it r/o */ +-- +2.10.2 + |