X-Git-Url: http://www.chiark.greenend.org.uk/ucgi/~ianmdlvl/git?p=elogind.git;a=blobdiff_plain;f=TODO;h=09ccbbea23941b706d559817145c801a0cb3e2cb;hp=2fb9cd3e89aaf4faebddb26dfa93ca4c15f24d31;hb=743e7e5242b72dac182b4c15ff3a48be83277ece;hpb=80caea6cc72ebd311a311b1527cc6b87201c13bf diff --git a/TODO b/TODO index 2fb9cd3e8..09ccbbea2 100644 --- a/TODO +++ b/TODO @@ -30,6 +30,10 @@ External: Features: +* Introduce PrivateDevices=yes/no which works like PrivateTmp= but for /dev setting up a tmpfs for it that only includes /dev/null, /dev/zero, /dev/random, /dev/urandom, but nothing else. + +* libsystemd-journal returns the object created as first param in sd_journal_new(), sd_bus_new() and suchlike as last... + * cgroups: - implement system-wide DefaultCPUAccounting=1 switch (and similar for blockio, memory?) - implement per-slice CPUFairScheduling=1 switch @@ -45,9 +49,8 @@ Features: - add field to transient units that indicate whether systemd or somebody else saves/restores its settings, for integration with libvirt - ensure scope units may be started only a single time -* switch to SipHash for hashmaps/sets? - -* general: get rid of readdir_r/dirent_storage stuff, it's unnecessary on Linux +* code cleanup + - we probably should replace the left-over uses of strv_append() and replace them by strv_push() or strv_extend() * when we detect low battery and no AC on boot, show pretty splash and refuse boot @@ -63,16 +66,12 @@ Features: * Automatically configure swap partition to use for hibernation by looking for largest swap partition on the root disk? -* remove NSS usage from PID 1 (notably the specifiers) - * socket-proxyd:Use a nonblocking alternative to getaddrinfo * rfkill,backlight: we probably should run the load tools inside of the udev rules so that the state is properly initialized by the time other software sees it * Add a new Distribute=$NUMBER key to socket units that makes use of SO_REUSEPORT to distribute network traffic on $NUMBER instances -* we probably should replace the left-over uses of strv_append() and replace them by strv_push() or strv_extend() - * move config_parse_path_strv() out of conf-parser.c * After coming back from hibernation reset hibernation swap partition using the /dev/snapshot ioctl APIs @@ -87,8 +86,9 @@ Features: * refuse boot if /etc/os-release is missing or /etc/machine-id cannot be set up -* given that logind/machined now let PID 1 do all nasty work, we can - probably reduce the capability set they retain substantially. +* given that logind now lets PID 1 do all nasty work, we can + probably reduce the capability set it retains substantially. + (we need CAP_SYS_ADMIN for drmSetMaster(), so maybe not worth it) * btrfs raid assembly: some .device jobs stay stuck in the queue @@ -104,8 +104,6 @@ Features: Maybe take a BSD lock at the disk device node and teach udev to check for that and suppress event handling. -* document logic of auto/noauto and fail/nofail in fstab in systemd.mount or systemd-fstab-generator man page - * something pulls in pcre as shared object dependency into our daemons such as hostnamed. * allow implementation of InaccessibleDirectories=/ plus @@ -113,32 +111,29 @@ Features: * libsystemd-bus: - when kdbus doesn't take our message without memfds, try again with memfds - - implement translator service - implement monitor logic - - properly map matches with well-known names against messages with unique names - - when triggering property change events, allow a NULL strv indicate that all properties listed as such are send out as changed - see if we can drop more message validation on the sending side - - support "const" properties as flag - add API to clone sd_bus_message objects - SD_BUS_COMMENT() macro for inclusion in vtables, syntax inspired by gdbus - - make sd_bus_open_system_container() kdbus aware + - systemd-bus-proxyd needs to enforce good old XML policy + - upload minimal kdbus policy into the kernel at boot + - kdbus: matches against source or destination pids for an "strace -p"-like feel. Problem: The PID info needs to be available in userspace too... - longer term: * priority queues * priority inheritance - - sort out error codes for sd_bus_release_name(), distuingish: successful removal from foreign name, from non-existing name - - bug in kdbus: nameownerchange is not generated for names, only ids. - - kdbus: matches against source or destination pids for an "strace -p"-like feel. Problem: The PID info needs to be available in userspace too... - - kdbus: we need a way to distuingish messages we got due to monitoring from normal messages, since we want to bind methods only to the latter - - figure out what to do when fields in the kdbus header and in the payload header do not match + - check sender of response messages + - dbus spec updates: + - kdbus mapping + - NameLost/NameAcquired obsolete + - GVariant + - "const" properties (posted) + - port exit-on-idle logic to byebye ioctl + - make use of "drop" ioctl in pid 1 bus activation + - bus proxy: override unique id sender for messages from driver to match the well-known name + - bus driver: GetNameOwner() for "org.freedesktop.DBus" should return "org.freedesktop.DBus" * sd-event - - allow multiple signal handlers per signal - - when a handler returns an error, just turn off its event source, - but do not return anything up to the event loop caller. Instead - add parameter to sd_event_request_quit() to take retval. This way - errors rippling upwards are the option, not the default - - child pid handling: first invoke waitid(WNOHANG) and call event handler, only afterwards reap the process - - native support for watchdog stuff + - allow multiple signal handlers per signal? * in the final killing spree, detect processes from the root directory, and complain loudly if they have argv[0][0] == '@' set. @@ -162,6 +157,8 @@ Features: * timedatctl, localectl: possibly make some commands work without the daemon, for chroot situations... +* timedatectl: print a nicer message when enabling ntp fails because ntpd/chrony are not installed + * cgtop: make cgtop useful in a container * test/: @@ -300,7 +297,6 @@ Features: - journal: sanely deal with entries which are larger than the individual file size, but where the components would fit - Replace utmp, wtmp, btmp, and lastlog completely with journal - journalctl: instead --after-cursor= maybe have a --cursor=XYZ+1 syntax? - - journalctl: support -M to read journal of containers and determine journal directory from root directory of container - tmpfiles: when applying ownership to /run/log/journal, also do this for the journal fails contained in it - when a kernel driver logs in a tight loop, we should ratelimit that too. - journald: optionally, log debug messages to /run but everything else to /var @@ -314,11 +310,9 @@ Features: hence doing this via signals is not going to work. * document: - - document that deps in [Unit] sections ignore Alias= fileds in + - document that deps in [Unit] sections ignore Alias= fields in [Install] units of other units, unless those units are disabled - man: clarify that time-sync.target is not only sysv compat but also useful otherwise. Same for similar targets - - Document word splitting syntax for ExecStart= and friends - - document that units from /etc override those from /usr and /run - document the exit codes when services fail before they are exec()ed - document that service reload may be implemented as service reexec - document in wiki how to map ical recurrence events to systemd timer unit calendar specifications @@ -348,7 +342,7 @@ Features: - rework wait filter to not require match callback - better error message if you run systemctl without systemd running - systemctl status output should should include list of triggering units and their status - - in systemctl list-timers show time trggering units ran last + - in systemctl list-timers show time triggering units ran last * unit install: - "systemctl mask" should find all names by which a unit is accessible @@ -431,7 +425,6 @@ Features: - nspawn: investigate whether we can support the same as LXC's lxc.network.type=phys mode, and pass through entire network interfaces to the container - - nspawn: maybe add a way to drop additional caps, in addition to add additional caps - nspawn: maybe explicitly reset loginuid? - nspawn: make it work for dwalsh and shared /usr containers -- tmpfs mounts as command line parameters, selinux exec context - refuses to boot containers without /etc/machine-id (OK?), and with empty /etc/machine-id (not OK). @@ -439,6 +432,7 @@ Features: SOCK_RAW, NETLINK_AUDIT) fail the the appropriate error code that makes the audit userspace to think auditing is not available in the kernel. + - support taking a btrfs snapshot at startup and dropping it afterwards * cryptsetup: - cryptsetup-generator: allow specification of passwords in crypttab itself @@ -526,12 +520,8 @@ Features: - kill scsi_id - add trigger --subsystem-match=usb/usb_device device -* cleanup syslog 'priority' vs. 'level' wording - * when a service has the same env var set twice we actually store it twice and return that in systemctl show -p... We should only show the last setting -* support container_ttys= - * introduce mix of BindTo and Requisite * add DeleteSocketsOnStop=yes|no option to socket units