Re: [systemd-devel] date/time set to epoch when using readonly rootfs

2020-10-21 Thread Tomasz Torcz
On Wed, Oct 21, 2020 at 10:13:10PM +0200, Belisko Marek wrote: > Hi, > > I'm facing a strange issue. When I boot system using systemd (244.3) > and in one service I'm generating some certificates. When checking > them I'm getting the result that the certificate was created 1.1.1970 > which is

[systemd-devel] BTI interaction between seccomp filters in systemd and glibc mprotect calls, causing service failures

2020-10-21 Thread Jeremy Linton
Hi, There is a problem with glibc+systemd on BTI enabled systems. Systemd has a service flag "MemoryDenyWriteExecute" which uses seccomp to deny PROT_EXEC changes. Glibc enables BTI only on segments which are marked as being BTI compatible by calling mprotect PROT_EXEC|PROT_BTI. That call is

Re: [systemd-devel] [udev] Scanner rule not applied during boot

2020-10-21 Thread Marcin Kocur
W dniu 21.10.2020 o 08:52, Lennart Poettering pisze: On Di, 20.10.20 23:16, Marcin Kocur (marcin2...@gmail.com) wrote: Lennart, I'm using outdated lxdm with Xfce. I just disabled lxmd, copied fresh /etc/X11/xinit/xinitrc to ~/.xinitrc (adding my environment exec command there) and started my

[systemd-devel] date/time set to epoch when using readonly rootfs

2020-10-21 Thread Belisko Marek
Hi, I'm facing a strange issue. When I boot system using systemd (244.3) and in one service I'm generating some certificates. When checking them I'm getting the result that the certificate was created 1.1.1970 which is invalid. I can wait until I get a network connection and only then create

Re: [systemd-devel] [udev] Scanner rule not applied during boot

2020-10-21 Thread Lennart Poettering
On Di, 20.10.20 23:16, Marcin Kocur (marcin2...@gmail.com) wrote: > Lennart, > > I'm using outdated lxdm with Xfce. > > I just disabled lxmd, copied fresh /etc/X11/xinit/xinitrc to ~/.xinitrc > (adding my environment exec command there) and started my environment from > startx: ACLs didn't