[systemd-devel] [PATCH 1/2] systemd: mount the securityfs filesystem at early stage

2012-02-22 Thread Roberto Sassu
The mount of the securityfs filesystem is now performed in the main systemd executable as it is used by IMA to provide the interface for loading custom policies. The unit file 'units/sys-kernel-security.mount' has been removed because it is not longer necessary. Signed-off-by: Roberto Sassu

[systemd-devel] [PATCH 2/2] main: added support for loading IMA custom policies

2012-02-22 Thread Roberto Sassu
The new function ima_setup() loads an IMA custom policy from a file in the default location '/etc/ima/ima-policy', if present, and writes it to the path 'ima/policy' in the security filesystem. This function is executed at early stage in order to avoid that some file operations are not measured by

Re: [systemd-devel] systemd39: journald segfault brings down some user services

2012-02-22 Thread Warpme
On 2/20/12 11:35 PM, Olav Vitters wrote: On Thu, Feb 09, 2012 at 08:12:55PM +0100, Lennart Poettering wrote: Now, of course, the journal shouldn't crash in the first place. This bug is still something to fix, but so far nobody managed to get me a bt of this. if the journal itself crashes a

Re: [systemd-devel] systemd39: journald segfault brings down some user services

2012-02-22 Thread Warpme
On 2/22/12 7:06 PM, Warpme wrote: On 2/20/12 11:35 PM, Olav Vitters wrote: On Thu, Feb 09, 2012 at 08:12:55PM +0100, Lennart Poettering wrote: Now, of course, the journal shouldn't crash in the first place. This bug is still something to fix, but so far nobody managed to get me a bt of this.