On Do, 14.09.17 07:25, Nico Kadel-Garcia (nkadel(a)gmail.com) wrote:
And... "let's replace something that is stable, long
supported, and
works across multiple platforms with an untested new systemd feature
for which stable software will have to be rewritten and thus a fork
maintained for Linux" has been a longstanding problem. There have been
too many half-thought-out sytemd "enhancements" that break working
software and use models.
Thank you for the friendly words.
Note that systemd's new IPAddressAllow=/IPAddressDeny= settings apply
to all sockets a service creates automatically — without any
modification of the daemon code itself, thanks to the powers of
ebpf/cgroups.
Lennart
--
Lennart Poettering, Red Hat