summaryrefslogtreecommitdiff
path: root/units/systemd-machined.service.in
AgeCommit message (Expand)AuthorFilesLines
2020-04-02Merge v244 into tizenAdrian Szyndela1-1/+2
2020-03-27Merge v242 into tizenAdrian Szyndela1-0/+1
2020-03-26Merge v240 into tizenAdrian Szyndela1-8/+9
2020-03-26Merge v239 into tizenAdrian Szyndela1-1/+2
2020-02-26Merge v236 into tizensandbox/adrians/upgrade-to-236Adrian Szyndela1-0/+2
2020-02-26Merge v235 into tizenAdrian Szyndela1-0/+2
2020-02-26Merge v234 into tizenAdrian Szyndela1-3/+7
2019-11-15units: set ProtectKernelLogs=yes on relevant unitsKevin Kuehler1-0/+1
2019-10-25meson: allow WatchdogSec= in services to be configuredZbigniew Jędrzejewski-Szmek1-1/+1
2019-02-20units: enable ProtectHostname=yesTopi Miettinen1-0/+1
2018-11-12units: set NoNewPrivileges= for all long-running servicesLennart Poettering1-7/+8
2018-06-14units: switch from system call blacklist to whitelistLennart Poettering1-1/+2
2017-11-19Add SPDX license headers to unit filesZbigniew Jędrzejewski-Szmek1-0/+2
2017-10-04units: prohibit all IP traffic on all our long-running services (#6921)Lennart Poettering1-0/+1
2017-09-14units: set LockPersonality= for all our long-running services (#6819)Lennart Poettering1-0/+1
2017-06-28units: use https for the freedesktop url (#6227)AsciiWolf1-1/+1
2017-06-21machined: add RequiresMountsFor=/var/lib/machinesFelipe Sateler1-0/+1
2017-02-24Set SmackProcessLabel as System.jin-gyu.kim1-0/+1
2017-02-09units: make use of @reboot and @swap in our long-running service SystemCallFi...Lennart Poettering1-1/+1
2017-02-09units: set SystemCallArchitectures=native on all our long-running servicesLennart Poettering1-0/+1
2016-09-25units: further lock down our long-running servicesLennart Poettering1-1/+3
2016-06-21units: machined needs mount-related syscalls for its namespacing operationsLennart Poettering1-1/+1
2016-06-13units: tighten system call filters a bitLennart Poettering1-1/+1
2016-06-09units: add a basic SystemCallFilter (#3471)Topi Miettinen1-0/+1
2016-06-08units: enable MemoryDenyWriteExecute (#3459)Topi Miettinen1-0/+1
2016-04-25machined: add CAP_MKNOD to capabilities to run with (#3116)Lennart Poettering1-1/+1
2015-09-29units: increase watchdog timeout to 3min for all our servicesLennart Poettering1-1/+1
2015-07-27units: add more caps to machinedLennart Poettering1-1/+1
2015-02-17machined: move logic for bind mounting into containers from machinectl to mac...Lennart Poettering1-6/+5
2015-02-11Revert "units: add SecureBits"Lennart Poettering1-1/+0
2015-02-11units: add SecureBitsTopi Miettinen1-0/+1
2014-12-19machined/machinectl: add logic to show list of available imagesLennart Poettering1-1/+1
2014-07-03machinectl: show /etc/os-release information of container in status outputLennart Poettering1-1/+1
2014-06-19units: add missing caps so that GetAddresses() can workLennart Poettering1-1/+1
2014-06-06units: fix minor typoLennart Poettering1-1/+1
2014-06-04core: rename ReadOnlySystem= to ProtectSystem= and add a third value for also...Lennart Poettering1-2/+2
2014-06-03core: add new ReadOnlySystem= and ProtectedHome= settings for service unitsLennart Poettering1-0/+2
2014-03-19core: enable PrivateNetwork= for a number of our long running services where ...Lennart Poettering1-0/+1
2014-03-19units: make use of PrivateTmp=yes and PrivateDevices=yes for all our long-run...Lennart Poettering1-0/+2
2013-12-23units: systemd-machined now exits on idle and we shouldn't try to restart it ...Lennart Poettering1-2/+0
2013-12-11event: hook up sd-event with the service watchdog logicLennart Poettering1-0/+1
2013-07-19machined: run machined at minimal capabilitiesLennart Poettering1-0/+1
2013-07-19units: add references to bus API documentation to logind+machinedLennart Poettering1-1/+1
2013-07-02machined: split out machine registration stuff from logindLennart Poettering1-0/+19