*** jude has joined #buildstream | 07:07 | |
*** jonathanmaw has joined #buildstream | 08:16 | |
*** tlater has joined #buildstream | 08:38 | |
*** ssam2 has joined #buildstream | 09:04 | |
*** tristan has quit IRC | 10:36 | |
*** locallycompact has joined #buildstream | 13:05 | |
*** xjuan has joined #buildstream | 13:17 | |
*** jjardon[m] has quit IRC | 14:12 | |
*** jjardon[m] has joined #buildstream | 14:13 | |
tlater | Is bst expected to be run as root when it uses chroot? | 14:44 |
---|---|---|
juergbi | tlater: yes, it either needs to run as root or use a setuid-root helper | 14:55 |
juergbi | chroot is essentially a cross-platform fallback, not the optimal case | 14:57 |
tlater | Ah, alright, I suppose bothering to implement versions for linux and bsd is a bit over the top then. | 14:59 |
ssam2 | there is a setuid helper https://github.com/bloomberg/userchroot | 15:02 |
ssam2 | however it's not that useful because we need to do stuff with root priviliges in the sandbox | 15:02 |
ssam2 | which is possible with bubblewrap because we can run in a separate user namespace, but it's not possible at all on AIX | 15:03 |
ssam2 | so there's no way to avoid being root there | 15:03 |
tlater | It would be possible on Solaris, though | 15:05 |
tlater | I suppose for a prototype-style implementation that, again, is a bit over the top though. | 15:05 |
ssam2 | yeah, do the lowest denominator first | 15:05 |
gitlab-br-bot | push on buildstream@cross_platform (by Tristan Maat): 1 commit (last: Add SandboxChroot) https://gitlab.com/BuildStream/buildstream/commit/b5646f80bb6953a18fc167ddaf8f78d6dbb3a085 | 15:10 |
*** tlater has quit IRC | 15:17 | |
*** tlater has joined #buildstream | 15:21 | |
*** locallycompact has quit IRC | 16:30 | |
*** tlater has quit IRC | 17:04 | |
*** jonathanmaw has quit IRC | 17:06 | |
*** jude has quit IRC | 17:26 | |
*** ssam2 has quit IRC | 17:38 | |
*** jude has joined #buildstream | 17:44 | |
*** jude has quit IRC | 17:54 | |
*** jude has joined #buildstream | 19:46 | |
*** jude has quit IRC | 20:59 | |
*** xjuan has quit IRC | 22:19 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!