- sort out error codes for sd_bus_release_name(), distuingish: successful removal from foreign name, from non-existing name
- kdbus: matches against source or destination pids for an "strace -p"-like feel. Problem: The PID info needs to be available in userspace too...
- kdbus: we need a way to distuingish messages we got due to monitoring from normal messages, since we want to bind methods only to the latter
- - figure out what to do when fields in the kdbus header and in the payload header do not match
- - nameownerchange cannot be properly synthesized since we cannot distuingish messages from kernel when a name changed ownership starter → real from real → starter
+ - kdbus: when we do "systemctl daemon-reexec" the call doesn't get properly cancelled
- longer term:
* priority queues
* priority inheritance
* sd-event
- - allow multiple signal handlers per signal
- - when a handler returns an error, just turn off its event source,
- but do not return anything up to the event loop caller. Instead
- add parameter to sd_event_request_quit() to take retval. This way
- errors rippling upwards are the option, not the default
- - event sources should not be able to keep the sd_event around unconditionally
+ - allow multiple signal handlers per signal?
* in the final killing spree, detect processes from the root directory, and
complain loudly if they have argv[0][0] == '@' set.
- nspawn: investigate whether we can support the same as LXC's
lxc.network.type=phys mode, and pass through entire network
interfaces to the container
- - nspawn: maybe add a way to drop additional caps, in addition to add additional caps
- nspawn: maybe explicitly reset loginuid?
- nspawn: make it work for dwalsh and shared /usr containers -- tmpfs mounts as command line parameters, selinux exec context
- refuses to boot containers without /etc/machine-id (OK?), and with empty /etc/machine-id (not OK).
SOCK_RAW, NETLINK_AUDIT) fail the the appropriate error code that
makes the audit userspace to think auditing is not available in the
kernel.
+ - support taking a btrfs snapshot at startup and dropping it afterwards
* cryptsetup:
- cryptsetup-generator: allow specification of passwords in crypttab itself
* when a service has the same env var set twice we actually store it twice and return that in systemctl show -p... We should only show the last setting
-* support container_ttys=
-
* introduce mix of BindTo and Requisite
* add DeleteSocketsOnStop=yes|no option to socket units