noexec on /dev/shm

Jesse Keating jkeating at redhat.com
Tue Dec 14 17:47:11 UTC 2010


On 12/14/10 9:22 AM, Miloslav Trmač wrote:
> Bill Nottingham píše v Út 14. 12. 2010 v 12:08 -0500:
>>> The problem is not the technical solution. Problem is that changes of
>>> such important thing like /etc/fstab are decided without Fedora developers.
>>
>> Eh, what? It's a change to how API filesystems (/proc, /sys, etc.) get
>> mounted. When this was done in rc.sysinit, every change to how it mounted
>> /proc wasn't discussed on the devel list. When we switched to having dracut
>> be the primary way that API filesystems are mounted, that wasn't put up
>> to a FESCo vote.
> The practical difference is that nothing broke at that time, whereas
> systemd tends to break thinks that users use. (I won't buy dismissing it
> as "mere bugs" - adding NOEXEC could hardly have been a typo.)
> 	Mirek
>


Perhaps you missed the part where the bug was that the fs doesn't get 
remounted with the perms from fstab as by design.  That's the bug.

Lets have a little less chest pounding and a little more constructive 
discussion, mkay?

-- 
Jesse Keating
Fedora -- Freedom² is a feature!
identi.ca: http://identi.ca/jkeating




More information about the devel mailing list