Proposing Fedora Feature for private /tmp and /var/tmp for all systemd services in Fedora 17.

Daniel J Walsh dwalsh at redhat.com
Mon Nov 7 20:42:11 UTC 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 11/07/2011 03:38 PM, Matej Cepl wrote:
> Dne 7.11.2011 20:50, Daniel J Walsh napsal(a):
>> systemd as of Fedora 16 has the ability to run system services
>> with private /tmp and /var/tmp.  I would like to propose that we
>> make this the default in Fedora 17, or at least open a bugzilla
>> on all system services that we know of that use /tmp and /var/tmp
>> to make them use private /tmp and /var/tmp.
> 
> I am afraid, the proper way how to propose new Feature in Fedora is
>  described on http://fedoraproject.org/wiki/Features/Policy .
> Throwing it on fedora-devel is I am afraid most likely a waste of
> time.
> 
> Matěj
> 

I know I just opened a couple of other features on Fedora 17.  I just
wanted to open discussion on this about what would be the best way to
do this.

* Make it default in systemd
* Open bugzillas on apps that SELinux discovers uses /tmp and ask them
to change.
* Maybe a bad idea.  Since admins might get confused by different /tmp(s).
* Reasonable reasons for service apps to use /tmp.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAk64QqMACgkQrlYvE4MpobOdcQCggtykzSa2KoEPsMfEuVaggGTW
BaQAn0GoIu4Ls+vWzYT+jKzp1hu65xmN
=0e0q
-----END PGP SIGNATURE-----


More information about the devel mailing list