Re: [systemd-devel] Securing bind with systemd methods (was: bind-mount of /run/systemd for chrooted bind9/named)

2023-07-20 Thread Petr Menšík
BIND wans to read ephemeral port ranges to use for outgoing queries. We have such special quirks bind-mounted into bind chroot. But without SELinux-like protection that might not be needed. Consider read-binding /proc/sys/net/ipv4/ip_local_port_range into chroot. We have also

Re: [systemd-devel] Random freeze at booting Fedora 38

2023-07-20 Thread Barry Scott
> On 18 Jul 2023, at 13:37, Georges Leichtmann wrote: > > Hi, > > After upgrading Fedora 37 Workstation (which was fine) to Fedora 38 WS, I > see occasional (random) freezing when booting. The freeze occurs generally in > the screen where to select the user, where nothing is possible, only