X-Git-Url: http://www.chiark.greenend.org.uk/ucgi/~ianmdlvl/git?a=blobdiff_plain;f=TODO;h=de7639e863d970971235f96337814e2fabe3e172;hb=680258b112e8a78769a42abb71ada4981ce701e1;hp=56e264ce4233c3b56fc29e80812c981a22a4da19;hpb=d8b78264a5245307babbf5af8e39d6d4a1ae095f;p=elogind.git diff --git a/TODO b/TODO index 56e264ce4..de7639e86 100644 --- a/TODO +++ b/TODO @@ -49,21 +49,53 @@ Bugfixes: Features: -* explore multiple service instances per listening socket idea +* Query Paul Moore about relabelling socket fds while they are open -* testing tool for socket activation: some binary that listens on a socket and passes it on using the usual socket activation protocol to some server. +* move keymaps to /usr/lib/... rather than /usr/lib/udev/... -* ConditionHost= for filtering services for clusters +* journald: check whether it is OK if the client can still modify delivered journal entries -* journald: add symlinks and device names to kernel messages +* json: use jensson -* maybe make systemd-detect-virt suid? or use fscaps? +* json: properly serialize multiple fields with the same name per entry + +* journald: add option to choose between "split up nothing", "split up login user journals", "split up all user journals" + +* journal live copy, based on libneon (client) and libmicrohttpd + +* document in wiki json serialization + +* python-journal merge + +* system-wide seccomp filter + +* securityfs: don't mount in container + +* slave/shared remount root fs in container might clash with CAP_SYS_MOUNTS + +* ability to pass fds into systemd + +* system.conf should have controls for cgroups + +* bind mount read-only the cgroup tree higher than than nspawn + +* currently system services appear not to generate core dumps... + +* wall messages for shutdown should move to logind + +* allow writing multiple conditions in unit files on one line + +* There's something wrong with escaping unit names: http://lists.freedesktop.org/archives/systemd-devel/2012-August/006292.html + +* cleanup ellipsation for log output in journalctl and systemctl status: have a sane way to disable ellipsation, and disable it by default when invoked in less/more -* consider using __secure_getenv() instead of getenv() in libs +* enforce limits on fds openened by socket units -* journald: automatic rekeying with no log messages doesn't appear to work +* explore multiple service instances per listening socket idea -* man: document in ExecStart= explicitly that we don't take shell command lines, only executable names with arguments +* testing tool for socket activation: some binary that listens on a socket and passes it on using the usual socket activation protocol to some server. + +* maybe make systemd-detect-virt suid? or use fscaps? * shutdown: don't read-only mount anything when running in container @@ -82,8 +114,6 @@ Features: * document that service reload may be implemented as service reexec -* add option to reconfigure success exit codes/signals for services - * remember which condition failed for services, not just the fact that something failed * use opterr = 0 for all getopt tools @@ -96,11 +126,6 @@ Features: * add _SYSTEMD_USER_UNIT= field to journal entries -* remove Fedora /dev/null logic from localed.c, now that system-config-keyboard is gone - delete /etc/X11/xorg.conf.d/00-system-setup-keyboard.conf from spec file - -* journal: expose current disk usage - * dracut-shutdown needs to be ordered before unmounting /boot * wiki: document new logind LockSessions() call @@ -129,14 +154,10 @@ Features: * switch-root: sockets need relabelling -* segfault in journalctl during /var migration - * systemd-analyze post-boot is broken for initrd * man: clarify that time-sync.target is not only sysv compat but also useful otherwise. Same for similar targets -* journalctl should complain if run with uid != 0 and no persistent logs exist - * .device aliases need to be implemented with the "following" logic, probably. * refuse taking lower-case variable names in sd_journal_send() and friends. @@ -182,9 +203,7 @@ Features: * systemctl: when stopping a service which has triggres and warning about it actually check the TriggeredBy= deps fields -* journal: hook up with EFI firmware log, new kmsg logic - -* handle C-A-Del in logind, like the power/suspend buttons? +* journal: hook up with EFI firmware log * nspawn: make use of device cgroup contrller by default @@ -198,12 +217,6 @@ Features: - implement .d/ auto includes for unit files - add syntax to reset ExecStart= lists (and similar) -* manipulate CPU governor during boot, set it to performance - -* steal SBF management from the kernel - -* delay journal /var writeout to after boot if SBF is clean - * move passno parsing to fstab generator * improve !/proc/*/loginuid situation: make /proc/*/loginuid less dependent on CONFIG_AUDIT, @@ -239,8 +252,6 @@ Features: * Add pretty name for seats in logind -* nspawn wants dev_setup() for /dev/fd/ and friends? - * selinux: merge systemd selinux access controls (dwalsh) * ConditionSecurity= should learn about IMA @@ -300,6 +311,8 @@ Features: * dbus: in fedora, make the machine a symlink to /etc/machine-id +* dbus: move dbus to early boot + * journald: reuse XZ context * logind: add equivalent to sd_pid_get_owner_uid() to the D-Bus API @@ -318,8 +331,6 @@ Features: * journalctl: --cursor support -* systemctl status: show coredumps - * save coredump in Windows/Mozilla minidump format * support crash reporting operation modes (https://live.gnome.org/GnomeOS/Design/Whiteboards/ProblemReporting) @@ -397,8 +408,6 @@ Features: * GC unreferenced jobs (such as .device jobs) -* when failing to start a service due to ratelimiting, try again later, if restart=always is set - * write blog stories about: - enabling dbus services - status update @@ -509,6 +518,8 @@ Regularly: * set_put(), hashmap_put() return values check. i.e. == 0 doesn't free()! +* use __secure_getenv() instead of getenv() where appropriate + Scheduled for removal (or fixing): * xxxOverridable dependencies