Features:
+* fstab-generator: in a container, simply skip entries referencing physical devices
+
* mount /sys/fs/cgroup read-only (but leave the subdirs writable)
* gpt-auto-generator:
- port to sd-resolve for connecting to TCP dbus servers
- constructors for bus messages should probably not be OK with a NULL bus pointer
- sd_bus_escape_label() should probably be reworked into sd_bus_make_bus_path(prefix, external_id)
+ - .busname units should not use get_user_creds()/get_cgroup_creds() but instead do NSS only in temporarily forked off child
* sd-event
- allow multiple signal handlers per signal?
* currently x-systemd.timeout is lost in the initrd, since crypttab is copied into dracut, but fstab isn't
* nspawn:
- - nspawn: consider changing users for -u with /usr/bin/getent, so that NSS resolving works correctly
- nspawn: --read-only is not applied recursively to submounts
- bind mount read-only the cgroup tree higher than nspawn
- nspawn: make it work for dwalsh and shared /usr containers -- tmpfs mounts as command line parameters