Re: [systemd-devel] how to use systemd-sysext addons and systemd-stub to extend an UKI initrd

2023-12-05 Thread Lennart Poettering
On Mo, 04.12.23 17:40, Emanuele Giuseppe Esposito (eespo...@redhat.com) wrote: > Hello everyone, > > As the title suggests, I am trying to extend an UKI initrd via > systemd-sysext addons/extensions. > > I contributed to the systemd-stub UKI addons to extend the kernel > command line, so I know

Re: [systemd-devel] Where to install UKI cmdline addons in the root partition

2023-12-05 Thread Lennart Poettering
On Mo, 04.12.23 17:48, Emanuele Giuseppe Esposito (eespo...@redhat.com) wrote: > Hello everyone, > > Sorry for the back-to-back emails, but I realized I could use this > mailing list to bring up another topic related to UKI addons. > > This is the same as I wrote in >

[systemd-devel] Journald Rotate

2023-12-05 Thread BARO, MAXIMO E. (KSC-COMET-6330)[COMET Primary]
Greetings, I'm not sure if this is the right group to post this question to, but here goes... * On my Red Hat 8 system I have Storage=persistent, SplitMode=uid and SystemMaxFiles=100. * The folder /var/log/journal// I have 1 system.journal file and 99 user.journal files When the

[systemd-devel] systemd-pcrlock: what prevents unauthorized changes to the NV index?

2023-12-05 Thread Demi Marie Obenour
What prevents unauthorized changes to the NV index used by systemd-pcrlock? Is the secret key itself stored in the NV index, with the policy deciding who can read the key? Or does the policy on the NV index require that the policy established by systemd-pcrlock is itself satisfied before the NV