Re: [systemd-devel] What is the point of making timesyncd bus-activatible?

2020-09-04 Thread Lennart Poettering
provide a dbus activation file And then everything is race-free and robust. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Per user limit defaults in systemd.conf

2020-09-01 Thread Lennart Poettering
On Di, 01.09.20 08:57, Joshua Miller (joshuamille...@gmail.com) wrote: > On Tue, Sep 1, 2020 at 7:30 AM Lennart Poettering > wrote: > > Anyway, do you want this for login users or for system services? > > Initially your reference to User= suggests the latter, but your &g

Re: [systemd-devel] Per user limit defaults in systemd.conf

2020-09-01 Thread Lennart Poettering
o, given that PAM isn't really what system services should bother with. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Antw: [EXT] Re: tmpfiles chicken-egg problem

2020-08-26 Thread Lennart Poettering
in the man page and the docs otherwise. And besides that, we actually push people towards using RuntimeDirectory=, StateDirectory=, … and stuff so that these dirs are created when the service is started and not earlier, for services where that works.

Re: [systemd-devel] 'PIDFile=' warning and override.conf

2020-08-26 Thread Lennart Poettering
systemd/system/ to /etc/systemd/system/ and then fix it there. In that case the vendor supplied version is entirely ignored and not parsed and thus the warning goes away. If you otoh just add a extension drop-in via .d/ then the original file is read, including the legacy PIDFile= stanza,

Re: [systemd-devel] 'PIDFile=' warning and override.conf

2020-08-26 Thread Lennart Poettering
used and fix it, or that downstrea, users notice and complain to maintainers, and they fix it then. There's not much point to try to fix that locally as user, it's a warning only after all. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailin

Re: [systemd-devel] tmpfiles chicken-egg problem

2020-08-26 Thread Lennart Poettering
ag", and then the software would try a restart (up to the next > failure) You can add a hack around everything you like. But I'd suggest fixing the actual issue instead of taping over it... Lennart -- Lennart Poettering, Berlin ___ systemd-

Re: [systemd-devel] systemd-fsck doesn't check data partiton

2020-08-24 Thread Lennart Poettering
he util-linux mount command. If you don't use that, you are on your own. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] [question] is it possible with systemd-journalctl to change the location to save logs in other location?

2020-08-16 Thread Lennart Poettering
nts) doesn't matter to us much, we just think it's much simpler if the paths stay fixed and are useful universal identifiers, even if the stuff behind them is actually placed somehere else. Lennart -- Lennart Poettering, Berlin ___ syste

Re: [systemd-devel] fuse-sshfs and x-systemd.automount

2020-08-16 Thread Lennart Poettering
s systemd established will come from system context and will be disconnected from the client's context, and we think that's a good thing, not a bad thing. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] fuse-sshfs and x-systemd.automount

2020-08-16 Thread Lennart Poettering
it has to do with > systemd - nobody forced him to read or respond at all Yeah, but still no reason to ask people "what their f** problem" is... Anyway, just stop this. Both posting insults like that, and then discussing them. One more post on this and you are back on moderation. Lennart -

Re: [systemd-devel] fuse-sshfs and x-systemd.automount

2020-08-16 Thread Lennart Poettering
On So, 16.08.20 17:14, Reindl Harald (h.rei...@thelounge.net) wrote: > > > Am 16.08.20 um 17:03 schrieb Lennart Poettering: > > On Sa, 15.08.20 22:56, Reindl Harald (h.rei...@thelounge.net) wrote: > > > >> is it a bug or a concept issue that it's mounted fpr root i

Re: [systemd-devel] fuse-sshfs and x-systemd.automount

2020-08-16 Thread Lennart Poettering
On So, 16.08.20 17:16, Reindl Harald (h.rei...@thelounge.net) wrote: > > > Am 16.08.20 um 17:01 schrieb Lennart Poettering: > > On So, 16.08.20 09:05, Reindl Harald (h.rei...@thelounge.net) wrote: > > > >> how is it not given it#s a systemd-option and what is your f*

Re: [systemd-devel] fuse-sshfs and x-systemd.automount

2020-08-16 Thread Lennart Poettering
oot"? Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] fuse-sshfs and x-systemd.automount

2020-08-16 Thread Lennart Poettering
On So, 16.08.20 09:05, Reindl Harald (h.rei...@thelounge.net) wrote: > how is it not given it#s a systemd-option and what is your f** > problem? Reindl, I'll put you back on moderation if you write another mail like this. Lennart -- Lennart Poettering,

Re: [systemd-devel] How to disable seccomp in systemd-nspawn?

2020-08-16 Thread Lennart Poettering
On So, 16.08.20 15:01, Steve Dodd (steved...@gmail.com) wrote: > On Sun, 16 Aug 2020 at 14:54, Lennart Poettering > wrote: > > > > > I've just been bitten by this - last time I looked into a similar > > problem, > > > it seemed the calling code was confused by

Re: [systemd-devel] How to disable seccomp in systemd-nspawn?

2020-08-16 Thread Lennart Poettering
On Sa, 15.08.20 13:33, Steve Dodd (steved...@gmail.com) wrote: > On Fri, 26 Jun 2020 at 16:53, Lennart Poettering > wrote: > > > > We implement a system call allow list, i.e. everything that isn't > > > > explicitly allowed is denied. You can use --system-call-f

Re: [systemd-devel] [User question]Systemd cgroups freezes after activating EVM

2020-08-14 Thread Lennart Poettering
's no way around that. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-14 Thread Lennart Poettering
On Fr, 14.08.20 06:42, Harald Dunkel (harald.dun...@aixigo.com) wrote: > On 8/13/20 11:07 AM, Lennart Poettering wrote: > > > > No! It's a bug. Not in systemd, but LXC. But generating errors in such > > a borked setup is *good*, not bad, and certainly nothing to hide. > &g

Re: [systemd-devel] Antw: Re: Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-13 Thread Lennart Poettering
licit syscall or so. But here we have a read() call where we get the clearly borked data from, hence we generate this as EIO and not EINVAL. Ultimately, which error code to generate is just bike-shedding though... Lennart -- Lennart Poettering, Berlin _

Re: [systemd-devel] Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-13 Thread Lennart Poettering
og this (invalid PID and and in which > > cgroup it was). Returning generic error message without any indication > > what caused this error is not useful at all. > > I agree. Could you file a github issue for this? Please file a bug against LXC instead. They need to set up the envir

Re: [systemd-devel] Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-13 Thread Lennart Poettering
> what caused this error is not useful at all. > > Do you think it would be reasonable to silently ignore the PID = 0 > in cg_read_pid() and maybe others? No! It's a bug. Not in systemd, but LXC. But generating errors in such a borked setup is *good*, not bad, and certainly nothing to h

Re: [systemd-devel] Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-13 Thread Lennart Poettering
t entirely bogus. This is very clearly documented. It's an LXC bug, that's all. And yes, it causes weird error messages in systemd, but that's because the setup is just so broken, and as long as you do get *some* error messages I think we are good. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-13 Thread Lennart Poettering
ainer and the host run in the very same cgroup hierarchy? If that's the case (and it looks like it): this is not supported. Please file a bug against LXC, it's very clearly broken. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-13 Thread Lennart Poettering
ing correctly we cannot reasonably operate. And there *is* logging about this: client side, i.e. the message that this whole thread was started about. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Antw: [EXT] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-12 Thread Lennart Poettering
IO, since we read borked data. I am not sure why LXC should insert random processes into random subtrees of our cgroup tree. If it does that, this would really be a bug... Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-

Re: [systemd-devel] I/O error on "systemctl kill -s HUP rsyslog.service"

2020-08-11 Thread Lennart Poettering
the next thing to try would be to turn on debug logging with "systemd-analyze log-level debug" and reproduce the issue, then check if there's anything interesting in the logs. Please provide the relevant log excerpts here then. Lennart -- Lennart Poettering, Berlin ___

Re: [systemd-devel] systemd unit timer

2020-08-11 Thread Lennart Poettering
hile the backup is still running. Then, maybe you need some service to be up while you are doing your backup (or a mount), and it might be used by something else too, but should go away when not used. You can pull it in cleanly from your timer's service now, and mark it StopWhenUnneeded= so that it goes awa

Re: [systemd-devel] Does automatic boot assessment work for Type #2 EFI Unified Kernel Images?

2020-08-10 Thread Lennart Poettering
for that as well if I name my EFI images in a similar > naming scheme as the entries in $BOOT/loader/entries > > If not; is there a good reason why not and is it something that is worth > implementing? It should already just work. If it doesn't it would be a bug. Lennart -- Lennart Poetteri

Re: [systemd-devel] systemd unit timer

2020-08-10 Thread Lennart Poettering
uch an addition would make a ton of sense. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] systemd unit timer

2020-08-10 Thread Lennart Poettering
stance. And there's tons of other stuff too. i.e. it unifies how system programs are invoked, and that's a good thing. it turns time-based activation into "just another type of activation". Lennart -- Lennart Poettering, Berlin ___ systemd-de

Re: [systemd-devel] ConditionPathExists vs mount unit

2020-08-10 Thread Lennart Poettering
pen concurrently. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Problem understanding output of systemd-cgtop

2020-08-10 Thread Lennart Poettering
nabled on old kernels since it's slow there. On newer kernels we enable some accounting by default, but not all. For the root cgroup we can use the system resource accounting, which is available always, hence you always see useful data for the first line, regardless if per-unit accounting is on or not. L

Re: [systemd-devel] systemd-repart with volatile root

2020-08-10 Thread Lennart Poettering
On Mo, 10.08.20 19:36, Lennart Poettering (lenn...@poettering.net) wrote: > On Fr, 17.07.20 14:38, Xogium (cont...@xogium.me) wrote: > > > Hi, > > as the subject says, I am trying to use repart to add a partition on a block > > device, from inside the initramfs. I also m

Re: [systemd-devel] systemd-repart with volatile root

2020-08-10 Thread Lennart Poettering
Alternatively, file an issue, and we'll look into it, eventually (or is there already one filed?). Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] No signal sent to stop service

2020-08-10 Thread Lennart Poettering
art=on-abnormal > RestartSec=1 > LimitSTACK=infinity > LimitNOFILE=65535 > LimitNPROC=65535 > > [Install] > WantedBy=multi-user.target Please provide the "sytemctl status" output when this happens. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] systemd-inhibit don't work

2020-08-10 Thread Lennart Poettering
end inhibitors so that root can't trivially override it, but so far this hasn't been implemented. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] [PATCH 0/6] RFC: Initial implementation of mount table handling using libmount kernelwatch

2020-08-03 Thread Lennart Poettering
On Mi, 29.07.20 08:57, Ian Kent (ik...@redhat.com) wrote: > On Tue, 2020-07-28 at 16:13 +0200, Lennart Poettering wrote: > > On Mo, 27.07.20 12:57, Ian Kent (ik...@redhat.com) wrote: > > > > > Further to my post about using the new mount table notifications in > &g

Re: [systemd-devel] Odd status after core dump

2020-07-31 Thread Lennart Poettering
ing else as negatively. This however means that if CPU/IO is scarce the coredump processing might be delayed quite a bit. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] 246 rc2 : stdio-bridge: failed to process bus

2020-07-30 Thread Lennart Poettering
d-anaalyze completion does not cover log-level Could you please file github issues about both issues? (And ideally provide an strace of the stdio bridge thing?) https://github.com/systemd/systemd/issues/new?template=Bug_report.md Thank you! Lennart -- Lenna

Re: [systemd-devel] nspawn file descriptor limit running without .service/nspawn file

2020-07-29 Thread Lennart Poettering
=infinity > > found it from here > https://github.com/systemd/systemd/issues/4997 > > Although I'm running it from cmd and > --property="LimitNOFILE=infinity" gives me an error. > Use systemd-nspawn --rlimit=RLIMIT_NOFILE=8192:16384

Re: [systemd-devel] Creating a fake logind seat with no devices [Experiment]

2020-07-29 Thread Lennart Poettering
l restart foo.service`, and there could be other > things too? Seats are a concept of grouping hardware. A seat without hardware is pointless. If you have no hardware associated with a session then the session is seat-less, which is totally fine. I don't get what you are trying to d

Re: [systemd-devel] journald not associating log messages with service

2020-07-28 Thread Lennart Poettering
On Di, 28.07.20 12:12, Ian Pilcher (arequip...@gmail.com) wrote: > On 7/28/20 9:44 AM, Lennart Poettering wrote: > > Is the service short-lived? There's a race: if a process runs very > > quickly and logs journald might process the message after the process > > already e

Re: [systemd-devel] Best practices for lots of similar units?

2020-07-28 Thread Lennart Poettering
rdError=syslog Also remove this line. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Running scripts after networkd has done its things

2020-07-28 Thread Lennart Poettering
up, and before it has started going down? Essentially, I > want to emulate the up/down feature of ifupdown. See systemd.special(7), look for "network-online.target". Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list sys

Re: [systemd-devel] journald not associating log messages with service

2020-07-28 Thread Lennart Poettering
fically delay your service's exit (sleep 10...) but it's still racy and sucks hard. You could issue the equivalent of "journalctl --sync" at the end of your program... Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-deve

Re: [systemd-devel] [PATCH 0/6] RFC: Initial implementation of mount table handling using libmount kernelwatch

2020-07-28 Thread Lennart Poettering
thub? See: https://systemd.io/CONTRIBUTING https://github.com/systemd/systemd/pulls Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] systemd.timer every X days?

2020-07-28 Thread Lennart Poettering
d 16.5 days to the current unix day, then break that down to the day, and use that to re-enqueue a transient calendar event) Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Q: ExecStartPost and SuccessExitStatus

2020-07-28 Thread Lennart Poettering
ess... > > How would you solve this problem? Dou you actually men ExecStartPost=? Or is this a typo and you mean ExecStopPost=? How does your service definition look like otherwise? You can query the exit code with "systemctl show -p ExecMainStatus --value &

Re: [systemd-devel] nested x-systemd.automount - parent always mounted

2020-07-28 Thread Lennart Poettering
to-generator does by default... My recommendation: mount the ESP to /efi, and maybe add a symlink from /boot/efi → /efi, which makes things work with old code that insists that the ESP must be available in /boot/efi... Lennart -- Lennart Poettering, Berlin ___

Re: [systemd-devel] Service parameters reflection

2020-07-21 Thread Lennart Poettering
See: https://www.freedesktop.org/software/systemd/man/org.freedesktop.systemd1.html This does not go into detail how D-Bus works, but simply explains the interfaces systemd provides via the bus. "systemctl show" is just a thin laye

Re: [systemd-devel] vt220 default for serial console still relevant?

2020-07-21 Thread Lennart Poettering
the VT100 > seem so slick and futuristic. Our default used to be vt100 originally, but that can't do pgup/pgdown, which people found quite annyoing. vt220 adds support for that, and is apparently as widely supported, so we changed to that. Lennart -- Lennart Poette

Re: [systemd-devel] vt220 default for serial console still relevant?

2020-07-21 Thread Lennart Poettering
On Mo, 20.07.20 15:03, s...@collabora.com (s...@collabora.com) wrote: > On Sat, 11 Jul 2020 at 21:04:18 +0200, Lennart Poettering wrote: > > widely-supported TERM value > > For a value of TERM to work (at all), it must be something that is reliably > present in the terminfo/te

Re: [systemd-devel] vt220 default for serial console still relevant?

2020-07-15 Thread Lennart Poettering
able one that is available widely in termcap, that does color, and is a subset of both TERM=linux and TERM=xterm. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] vt220 default for serial console still relevant?

2020-07-15 Thread Lennart Poettering
r, unicode, emoji support individually via env vars btw, if people really want compat with such old terminals. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Antw: [EXT] Re: advice on how to address selinux-autorelabel issue with userdbd

2020-07-14 Thread Lennart Poettering
On Di, 14.07.20 11:02, Ulrich Windl (ulrich.wi...@rz.uni-regensburg.de) wrote: > >>> Lennart Poettering schrieb am 14.07.2020 um 09:50 > in > Nachricht <20200714075029.GC180968@gardel-login>: > > On Di, 14.07.20 09:10, Dac Override (dac.overr...@gmail.com) wrote

Re: [systemd-devel] vt220 default for serial console still relevant?

2020-07-14 Thread Lennart Poettering
an, if this all is the case, could you prep a PR? Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] systemd-analyze security and SystemCallFilter

2020-07-14 Thread Lennart Poettering
list defined for service, and @resources is not included 0.2 > ___ > systemd-devel mailing list > systemd-devel@lists.freedesktop.org > https://lists.freedesktop.org/mailman/listinfo/systemd-devel Lennart -- Lennart Poettering, Berlin __

Re: [systemd-devel] workaround for systemd-networkd-wait-online boot fail/delay on systems with bridge for v234? (fix @ systemd/issues/2154 requires v>242)

2020-07-14 Thread Lennart Poettering
ut we added that only in v242. See NEWS. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] service vs target

2020-07-14 Thread Lennart Poettering
ngle service, let say A.service, B.service, C.service However, > often you want to be able to start and stop them together. There are > two options that I am aware of: a grouping service of a grouping > target. Target unit's raison d'etre is grouping stuff. Use a target. Lennart

Re: [systemd-devel] Ensuring that a unit starts before any networking

2020-07-14 Thread Lennart Poettering
ke an informed statement on > that matter. Before I make the argument for it being fixed I want to be > sure of my argument! well, one never knows what might triger bugs somewhere, but afaics this should be a relatively riskless fix. Lennart

Re: [systemd-devel] GNOME boot-complete.target integration ?

2020-07-14 Thread Lennart Poettering
p. In that case we'd mark things as "neutral". As soon as gdm then received user input so that the log in starts, it would mark things as "bad" again. And when GNOME in the user's session finally is done with everything we'd mark things as "good" and everything is complete. >From

Re: [systemd-devel] Seccomp allow/log action

2020-07-14 Thread Lennart Poettering
the syntax Topi suggests makes a lot of sense and is a nice extension to what we already have in place. I mean, I personally don't like audit very much, I'd always prefer using something else over audit... Lennart -- Lennart Poettering, Berlin ___ syst

Re: [systemd-devel] advice on how to address selinux-autorelabel issue with userdbd

2020-07-14 Thread Lennart Poettering
t stuff too? Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] vt220 default for serial console still relevant?

2020-07-11 Thread Lennart Poettering
M=xterm or TERM=linux depending if you invoke qemu on an xterm or from a Linux console, hence the best thing we can do is stick to a reasonably powerful subset that is likely going to exist everywhere, and that's vt220 right now, as noone had a better suggestion so f

Re: [systemd-devel] dev-mmcblk0p2.device delay

2020-07-06 Thread Lennart Poettering
dev device. But if you drop that for a device and a service has the dependency on it anyway then this will just mean it will wait forever for it, because it never shows up then anymore. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mail

Re: [systemd-devel] GNOME boot-complete.target integration ?

2020-06-30 Thread Lennart Poettering
just ping that service if all is good. The service would then become part of the usual boot process, ordered before the boot blessing. Wouldn#t that suffice? Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Ensuring that a unit starts before any networking

2020-06-30 Thread Lennart Poettering
against your distro, so that they add After=network-pre.target. My educated guess is that, it's not trvial to get this right: we document what network-pre.target is for in systemd.special(7) man page, but I figure not everyone looks there. And i guess one most know a certain level of systemd to unde

Re: [systemd-devel] systemd-vconsole-setup.service: cannot open file de-latin1-nodeadkeys

2020-06-30 Thread Lennart Poettering
; consider a dist-upgrade This looks like dracut didn#t package the file correctly into the initrd. Please file a bug against dracut. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedes

Re: [systemd-devel] Antw: [EXT] Re: Accpetance of Environment Variables in Attributes

2020-06-30 Thread Lennart Poettering
ter to refer to the target section directly, instead of > referring to a section that refers to another section using a different > keyword, too. Send a patch as PR on github! Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list s

Re: [systemd-devel] Error timeout while starting Arch

2020-06-30 Thread Lennart Poettering
.device" and have a look for the WantedBy= and RequiredBy= fields. The unit name looks fishy, this almost certainly indicates some incorrect unit file or other bug in the unit responsible. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing

Re: [systemd-devel] Child of daemon sending SIGCHLD to systemd

2020-06-30 Thread Lennart Poettering
forks a child off (callout script?) that double forks somewhere? I don't know your software, it's probably best to ping the authors of it about this, they should know what their software does. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] How to disable seccomp in systemd-nspawn?

2020-06-26 Thread Lennart Poettering
On Fr, 26.06.20 21:43, Mohan R (mohan...@gmail.com) wrote: > Hi > > On Fri, Jun 26, 2020 at 9:23 PM Lennart Poettering > wrote: > > You might need a newer libseccomp so that the syscall is actually > > known by it. openat2 is a very recent syscall addition, and you need

Re: [systemd-devel] How to disable seccomp in systemd-nspawn?

2020-06-26 Thread Lennart Poettering
On Do, 25.06.20 20:19, Mohan R (mohan...@gmail.com) wrote: > Hi > > On Thu, Jun 25, 2020 at 2:17 PM Lennart Poettering > wrote: > > You can't disable seccomp right now. > > Any future plan to include a flag or some other way? > > > We implement a system

Re: [systemd-devel] Antw: [EXT] Re: Accpetance of Environment Variables in Attributes

2020-06-26 Thread Lennart Poettering
pping, then it gets mapped to "nobody". If you run binaries under that UID they'll hence get access to stuff they really should not get access to, nobody should in fact, hence these files are actually owned by just that, a user "nobody". If you use the "nobody" us

Re: [systemd-devel] Accpetance of Environment Variables in Attributes

2020-06-26 Thread Lennart Poettering
ance of service foo up and running. Copy the file, > change the No. You suddenly have to take of *one* *more* external file and break all the usualy workflows with "systemctl edit", "systemctl revert", "systemd-delta" and suchlike. Lennart -- Lennart Poettering, Ber

Re: [systemd-devel] Antw: [EXT] Re: Accpetance of Environment Variables in Attributes

2020-06-26 Thread Lennart Poettering
any environment variable being used. > Unclear is _when_ the copy should take place however. Just use m4 or shell. No need to duplicate in systemd what those languages already do. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Accpetance of Environment Variables in Attributes

2020-06-26 Thread Lennart Poettering
ove, variables (specifiers, whatever you call them) are not shell > specific. They are not shell specific. You could also use m4 if you want a templating language, there's no shame in that. But systemd is certainly not in the business of inventing yet another shell or generic templat

Re: [systemd-devel] Accpetance of Environment Variables in Attributes

2020-06-25 Thread Lennart Poettering
ut systemd has no concept of env var expansion in unit files. It's not a > > shell. > > That is unfortunate (not the shell part, but the variable one), but thanks > for the explanation, that helps. If you want a shell, use a shell. Lennart -- Lennart Poettering, Berlin __

Re: [systemd-devel] Accpetance of Environment Variables in Attributes

2020-06-25 Thread Lennart Poettering
ot part of the unit file language, but of the executor code. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] How to disable seccomp in systemd-nspawn?

2020-06-25 Thread Lennart Poettering
eric application code should have fallbacks in place when it comes to new system calls such as openat2(), if they are supposed to work on kernels that aren't the very newest or in containerized environments, since pretty much all of them employ a syscall filter allow list these days. Lenna

Re: [systemd-devel] [RFC] Seccomp filters from file

2020-06-24 Thread Lennart Poettering
On Mi, 24.06.20 09:02, Chris PeBenito (chpeb...@linux.microsoft.com) wrote: > On 6/23/20 10:57 AM, Lennart Poettering wrote: > > On Di, 23.06.20 09:41, Chris PeBenito (chpeb...@linux.microsoft.com) wrote: > > > > > I've got some challenges using systemd's

Re: [systemd-devel] [RFC] Seccomp filters from file

2020-06-23 Thread Lennart Poettering
t way you can have a common definition that is used by a variety of services. This is in fact what portablectl's --profile= logic internally does: it just symlinks a common .d/ drop-in into all service files it attaches. The common profiles are shipped in /usr/lib/systemd/portable/profile/. L

Re: [systemd-devel] nftables support for nspawn/networkd

2020-06-22 Thread Lennart Poettering
> Then, if nftables initialisation fails (e.g. because kernel was > built without nftables support), fall back to libiptc/iptables-classic. Yes, perfect! Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.fre

Re: [systemd-devel] nftables support for nspawn/networkd

2020-06-22 Thread Lennart Poettering
e interaction with the kernel side of things? Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Strange partition layout from systemd-repart

2020-06-16 Thread Lennart Poettering
On Fr, 05.06.20 15:29, Lennart Poettering (lenn...@poettering.net) wrote: > On Do, 04.06.20 16:58, Tobias Hunger (tobias.hun...@gmail.com) wrote: > > > Poking around a bit more: I have 4096 unused sectors before the first > > partiton instead of just 2048. Systemd-repart then t

Re: [systemd-devel] Systemd killed processes of custom services instead of graceful shutdown

2020-06-16 Thread Lennart Poettering
s correctly, since systemd just kills what the ExecStop= binary doesn't kill. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] kernel messages not making it to journal

2020-06-16 Thread Lennart Poettering
e in this case we should probably generate a log message in the main journal file, since only the user one was corrupted. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] sd-bus change that broke sdbus-c++

2020-06-16 Thread Lennart Poettering
fficult because we cannot > conditionally decide upon the behavior in our code based on the systemd > version, as 245 exhibits various behaviors depending on the minor version... Please file a bug on github. Lennart -- Lennart Poettering, Berlin __

Re: [systemd-devel] Monitoring unit and overall state

2020-06-16 Thread Lennart Poettering
ng against libsystemd.) It will report all failed services to you. You can even add "-o verbose" (or -o json) to get additional structure info from it. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] systemd IdleAction for lock is not working

2020-06-16 Thread Lennart Poettering
= n; > > } > > > > Is there any specific reason the “Lock” action is not handling in systemd? > > > > Is there any plan in future if the “Lock” action is handled in system? This might be a bug. Please file a bug on github about thus. Thanks Lennar

Re: [systemd-devel] workaround for systemd-networkd-wait-online boot fail/delay on systems with bridge for v234? (fix @ systemd/issues/2154 requires v>242)

2020-06-16 Thread Lennart Poettering
ed boot delay? Is rm'ing either the "Also=" or > "WantedBy=" a reasonable band-aid? > > Or, some other approach? You could use RequiredForOnline= in the bridge's .network file to mark it as irrelevant for systemd-networ

Re: [systemd-devel] A way to debug machine shutdown

2020-06-16 Thread Lennart Poettering
output whatever they want onto the console. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] systemd-nspawn: Failed at step SETSCHEDULER spawning /opt/freeswitch/bin/freeswitch: Operation not permitted

2020-06-16 Thread Lennart Poettering
the CPU scheduler, not the IO scheduler. Also, you need to turn off RT group sched in the kernel, as otherweise the CPU cgroup controller will disallowe rt sched all the way down the tree unless an rt budget is configured for each cgroup in the tree. Lennart -- Lennart Poettering, Berlin __

Re: [systemd-devel] hostnamectl reapplying the same hostname

2020-06-16 Thread Lennart Poettering
ctl --static > set-hostname instantly sets the transient hostname to *only* > when is not the current static hostname ? There's a shortcut in place: if you change a hostname to what it is already set to things are NOPs, and won't generate security incidents and so on. Lennart -- Le

Re: [systemd-devel] Services enabled in an nspawn container on an nfsroot

2020-06-16 Thread Lennart Poettering
all the time, but then condition them out in the environments you don't want them to run it. i.e. by adding a drop-in with "ConditionVirtualization=" or "ConditionKernelCommandLine="... and so on. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] Fedpra 32 NIS with systemd-logind.service: start operation timed out. Terminating. Got lookup error: io.systemd.TimedOut

2020-06-16 Thread Lennart Poettering
: > Invalid argument Yes, it's a bug: https://github.com/systemd/systemd/issues/16146 Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

Re: [systemd-devel] How to silence systemd's "Starting", "Succeeded" and "Started" notifications?

2020-06-16 Thread Lennart Poettering
hether there is any > built-in log-level style control for these systemd-generated messages. systemd logs about everything it does. If you don#t want that, you can turn it of. Set "systemd.log_level=notice" or so on the kernel cmdline, or LogLevel=notice in /etc/syste

Re: [systemd-devel] systemctl status cpu/memory

2020-06-16 Thread Lennart Poettering
eproducer on github. Please enable memory and IO accounting in your unit to get proper accounting. Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinf

Re: [systemd-devel] A way to debug machine shutdown

2020-06-16 Thread Lennart Poettering
e going on, something is reloading PID 1 configuration repeatedly during shutdown. Please figure out what does that and fix that. It's not how this should work... Lennart -- Lennart Poettering, Berlin ___ systemd-devel mailing list systemd-devel@lists.freedesktop.org https://lists.freedesktop.org/mailman/listinfo/systemd-devel

<    4   5   6   7   8   9   10   11   12   13   >