#include "mkdir.h"
#include "log.h"
#include "virt.h"
+#include "fileio.h"
static int shorten_uuid(char destination[36], const char *source) {
unsigned i, j;
if (k >= 36) {
r = shorten_uuid(id, uuid);
if (r >= 0) {
- log_info("Initializing machine ID from KVM UUID");
+ log_info("Initializing machine ID from KVM UUID.");
return 0;
}
}
if (strlen(e) >= 36) {
r = shorten_uuid(id, e);
if (r >= 0) {
- log_info("Initializing machine ID from container UUID");
+ log_info("Initializing machine ID from container UUID.");
free(e);
return 0;
}
}
/* And now, let's mount it over */
- r = mount("/run/machine-id", "/etc/machine-id", "bind", MS_BIND|MS_RDONLY, NULL) < 0 ? -errno : 0;
+ r = mount("/run/machine-id", "/etc/machine-id", NULL, MS_BIND, NULL) < 0 ? -errno : 0;
if (r < 0) {
unlink("/run/machine-id");
log_error("Failed to mount /etc/machine-id: %s", strerror(-r));
- } else
+ } else {
log_info("Installed transient /etc/machine-id file.");
+ /* Mark the mount read-only */
+ if (mount(NULL, "/etc/machine-id", NULL,
+ MS_BIND|MS_RDONLY|MS_REMOUNT, NULL) < 0)
+ log_warning("Failed to make transient /etc/machine-id read-only");
+ }
+
finish:
if (fd >= 0)