X-Git-Url: http://www.chiark.greenend.org.uk/ucgi/~ianmdlvl/git?a=blobdiff_plain;f=TODO;h=fd1d96d13920c63c8d099c1c48be1a5159b83753;hb=1946b0bd55b356ea25bd747cb338a4b31fabeecf;hp=48d8ba2320efdca3c208cdfba1663110fe10b242;hpb=f7357f59c3d4de8080fa78f8aa5fa6dbf1afc8dc;p=elogind.git diff --git a/TODO b/TODO index 48d8ba232..fd1d96d13 100644 --- a/TODO +++ b/TODO @@ -13,10 +13,6 @@ Bugfixes: - systemd enforces /usr to be available at bootup, so we can enforce the use of the symlink -* remove MS_SHARED from src/core/execute.c and src/test/test-ns.c. They are always combined - with MS_REMOUNT, which currently does nothing in the kernel, but might which fail in the - future; https://bugzilla.redhat.com/show_bug.cgi?id=813563 - * check systemd-tmpfiles for selinux context hookup for mknod(), symlink() and similar * swap units that are activated by one name but shown in the kernel under another are semi-broken @@ -53,13 +49,48 @@ Bugfixes: Features: -* drop PID 1 reloading, only do reexecing +* currently system services appear not to generate core dumps... -* document that service reload may be implemented as service reexec +* introduce /run/kmsg in containers? + +* introduce $container_boot_id? + +* wall messages for shutdown should move to logind + +* allow writing multiple conditions in unit files on one line + +* journal: json output needs to be able to deal with multiple assignments of the same field + +* There's something wrong with escaping unit names: http://lists.freedesktop.org/archives/systemd-devel/2012-August/006292.html + +* cleanup ellipsation for log output in journalctl and systemctl status: have a sane way to disable ellipsation, and disable it by default when invoked in less/more + +* enforce limits on fds openened by socket units + +* explore multiple service instances per listening socket idea + +* testing tool for socket activation: some binary that listens on a socket and passes it on using the usual socket activation protocol to some server. + +* maybe make systemd-detect-virt suid? or use fscaps? + +* man: document in ExecStart= explicitly that we don't take shell command lines, only executable names with arguments + +* shutdown: don't read-only mount anything when running in container + +* nspawn: --read-only is not applied recursively to submounts -* systemctl daemon-reexec is borked +* MountFlags=shared acts as MountFlags=slave right now. -* add option to reconfigure success exit codes/signals for services +* ReadOnlyDirectories= is not applied recursively to submounts + +* drop PID 1 reloading, only do reexecing (difficult: Reload() + currently is properly synchronous, Reexec() is weird, because we + can't delay the response properly until we are back, so instead of + being properly synchronous we just keep open the fd and close it + when done. That means clients don't get a succesful method reply, + but much rather a disconnect on success. + +* document that service reload may be implemented as service reexec * remember which condition failed for services, not just the fact that something failed @@ -78,8 +109,6 @@ Features: * journal: expose current disk usage -* logind: return EBUSY when a session is created on a seat+VT that already has one. - * dracut-shutdown needs to be ordered before unmounting /boot * wiki: document new logind LockSessions() call @@ -102,18 +131,16 @@ Features: * syscall filter: option to return EPERM rather than SIGSYS? +* syscall filter: port to libseccomp + * logind: wakelock/opportunistic suspend support * switch-root: sockets need relabelling -* segfault in journalctl during /var migration - * systemd-analyze post-boot is broken for initrd * man: clarify that time-sync.target is not only sysv compat but also useful otherwise. Same for similar targets -* journalctl should complain if run with uid != 0 and no persistent logs exist - * .device aliases need to be implemented with the "following" logic, probably. * refuse taking lower-case variable names in sd_journal_send() and friends. @@ -159,14 +186,12 @@ Features: * systemctl: when stopping a service which has triggres and warning about it actually check the TriggeredBy= deps fields -* journal: hook up with EFI firmware log, new kmsg logic +* journal: hook up with EFI firmware log * handle C-A-Del in logind, like the power/suspend buttons? * nspawn: make use of device cgroup contrller by default -* make use of /sys/power/wake_lock in inhibitors - * drop accountsservice's StandardOutput=syslog and Type=dbus fields * when breaking cycles drop sysv services first, then services from /run, then from /etc, then from /usr @@ -218,8 +243,6 @@ Features: * Add pretty name for seats in logind -* nspawn wants dev_setup() for /dev/fd/ and friends? - * selinux: merge systemd selinux access controls (dwalsh) * ConditionSecurity= should learn about IMA @@ -247,8 +270,6 @@ Features: * cleanup syslog 'priority' vs. 'level' wording -* journal: if mmap() fails for mapping window try to unmap a a few older maps - * dbus upstream still refers to dbus.target and shouldn't * when a service has the same env var set twice we actually store it twice and return that in systemctl show -p... We should only show the last setting @@ -293,12 +314,8 @@ Features: * journal: message catalog -* journal: forward-secure signatures - * document the exit codes when services fail before they are exec()ed -* rework namespace support, don't use pivot_root, and mount things after creating the namespace, not before - * systemctl journal command * journalctl: --cursor support @@ -394,6 +411,7 @@ Features: - resource control in systemd - inhibiting - testing with Harald's awesome test kit + - restart * allow port=0 in .socket units @@ -493,10 +511,8 @@ Regularly: * set_put(), hashmap_put() return values check. i.e. == 0 doesn't free()! +* use __secure_getenv() instead of getenv() where appropriate + Scheduled for removal (or fixing): * xxxOverridable dependencies - -* journald.conf: ImportKernel= - -* prefdm.service