Re: By default, restrict vsock

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, Jan 24, 2025 at 05:20:50PM +0000, "Fox, Kevin M" <Kevin.Fox@xxxxxxxx> wrote:
> So, I think there still is a problem here.
> 
> Any ideas?

Hm, the latter is clearly generally unadvisable, so stick with the first
approach and allow the AF_VSOCK in a higher drop-in, in your case

/usr/lib/systemd/system/particular.service.d/20-vsock-enable.conf

(Admiteddly, the service config would be broken down to multiple files
this way.)

HTH,
Michal

Attachment: signature.asc
Description: PGP signature


[Index of Archives]     [LARTC]     [Bugtraq]     [Yosemite Forum]     [Photo]

  Powered by Linux