summaryrefslogtreecommitdiffstats
path: root/recipes-extended/rootlesskit/relocation.inc
Commit message (Collapse)AuthorAgeFilesLines
* metadata: relocation.inc: add whitespace around assignmentsMartin Jansa2025-04-031-1/+1
| | | | | | | | | With: https://lists.openembedded.org/g/bitbake-devel/message/17508 there are many WARNINGs from this layer Signed-off-by: Martin Jansa <martin.jansa@gmail.com> Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
* rootlesskit: update to v2.3.4Bruce Ashfield2025-03-261-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Bumping rootlesskit to version v2.3.4-4-g530859a, which comprises the following commits: 8d196ce Build(deps): Bump golang.org/x/net from 0.33.0 to 0.36.0 c4026e3 v2.3.4+dev 59a459d v2.3.4 0ba161d Revert "detach-netns: simplify unshare helper" f36cdb1 v2.3.3+dev 67494d9 v2.3.3 984c06b CI: release: update Ubuntu 24.04 1ebaa93 CI: update passt to 2025_02_17.a1e48a0 63d6a16 CI: update slirp4netns to 1.3.2 694339b CI: update Go to 1.24 0dfe464 detach-netns: simplify unshare helper dd377ba Fix detach-netns permission error on Ubuntu 25.04 b949c1e Build(deps): Bump golang.org/x/sys from 0.30.0 to 0.31.0 01f93c6 Build(deps): Bump github.com/urfave/cli/v2 from 2.27.5 to 2.27.6 8f2b39f CI: test Docker v28 in addition to v27 68f2c8c Build(deps): Bump github.com/containernetworking/plugins 5688cce Build(deps): Bump golang.org/x/sys from 0.29.0 to 0.30.0 e5eed65 Build(deps): Bump gotest.tools/v3 from 3.5.1 to 3.5.2 f0427e9 v2.3.2+dev b8175e1 v2.3.2 e3b42e9 CI: update Docker (27.5.0) 0db252c go.mod: github.com/insomniacslk/dhcp v0.0.0-20250109001534-8abf58130905 f858ea0 Build(deps): Bump actions/attest-build-provenance from 1 to 2 57f093a dependabot: add github-actions 35080d8 CI: update pasta (2024_12_11.09478d5) 0d11cdb pasta: set `--host-lo-to-ns-lo` b4fe9a7 go fmt Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
* rootlesskit: update to v2.3.1Bruce Ashfield2025-01-171-1/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Bumping rootlesskit to version v2.3.1-28-g0b4ed7b, which comprises the following commits: b4fe9a7 go fmt a1beb23 Build(deps): Bump golang.org/x/net from 0.28.0 to 0.33.0 9546d0d Build(deps): Bump golang.org/x/sys from 0.28.0 to 0.29.0 2363620 fix: allow to propagate the address specified in -p option a710d84 Build(deps): Bump golang.org/x/sys from 0.27.0 to 0.28.0 7c52d16 Build(deps): Bump golang.org/x/sys from 0.25.0 to 0.27.0 16c6608 Build(deps): Bump github.com/Masterminds/semver/v3 from 3.3.0 to 3.3.1 19fab4c Build(deps): Bump github.com/urfave/cli/v2 from 2.27.4 to 2.27.5 b26bc59 Build(deps): Bump golang.org/x/sys from 0.24.0 to 0.25.0 f11b0e6 port/builtin: return proper error for sctp f98e27e Build(deps): Bump github.com/Masterminds/semver/v3 from 3.2.1 to 3.3.0 3bb2efa docs/network: Mention that pasta won't work with some Ubuntu package versions baec6fd docs/network: Don't suggest removing AppArmor rules for pasta ae0c97d pasta: Update comment about issue with AppArmor and creation of user namespace 3c35024 v2.3.1+dev fcc67fe v2.3.1 56337e7 CI: attest-build-provenance: fix a subject-path issue (461) 2c2a107 v2.3.0+dev 5bf364f v2.3.0 f3948fd Enable actions/attest-build-provenance e403655 CI: update Docker (27.1.2) 169edeb CI: update pasta (2024_08_14.61c0b0d) d5a270f go.mod: golang.org/x/net v0.28.0 5e81602 go.mod: github.com/insomniacslk/dhcp v0.0.0-20240812123929-b105c29bd1b5 8751f26 Deprecate rootlesskit-docker-proxy (no longer needed since Docker v28) 36ceb0e child, pasta: Allow drivers to configure their own interface, let pasta do that ade4c86 pasta: Let it run in background, and wait until it forks 8cbb3ae CI: update Go to 1.23 1139aed Build(deps): Bump github.com/urfave/cli/v2 from 2.27.3 to 2.27.4 fba675b Build(deps): Bump golang.org/x/sys from 0.22.0 to 0.24.0 926c6aa Build(deps): Bump github.com/urfave/cli/v2 from 2.27.2 to 2.27.3 90ad956 Build(deps): Bump github.com/gofrs/flock from 0.12.0 to 0.12.1 1899165 Build(deps): Bump github.com/moby/sys/mountinfo from 0.7.1 to 0.7.2 c5a4fbf v2.2.0+dev 17a2cd4 v2.2.0 b8197ef go.mod: update d6a8962 CI: update dependencies a631a8c Build(deps): Bump github.com/gofrs/flock from 0.8.1 to 0.12.0 ca26493 Add reexec branch for socket activation to correct LISTEN_PID c202896 Build(deps): Bump golang.org/x/sys from 0.21.0 to 0.22.0 8ce63fd Build(deps): Bump github.com/containernetworking/plugins f68acb9 Build(deps): Bump golang.org/x/sys from 0.20.0 to 0.21.0 c784875 Build(deps): Bump github.com/containernetworking/plugins Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
* rootlesskit: introduce linux-native fakeroo using user namespacesBruce Ashfield2024-06-041-0/+38
see: https://github.com/rootless-containers/rootlesskit --------- RootlessKit: Linux-native fakeroot using user namespaces RootlessKit is a Linux-native implementation of 'fake root' using user_namespaces(7). The purpose of RootlessKit is to run Docker and Kubernetes as an unprivileged user (known as 'Rootless mode'), so as to protect the real root on the host from potential container-breakout attacks. --------- This is a building block for cross installation of containers and rootless on-target execution. Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>