]> git.pld-linux.org Git - projects/rc-scripts.git/commitdiff
Mount /run as mode=0755,noexec,nosuid,nodev.
authorArkadiusz Miśkiewicz <arekm@maven.pl>
Tue, 7 Jun 2016 15:09:48 +0000 (17:09 +0200)
committerArkadiusz Miśkiewicz <arekm@maven.pl>
Tue, 7 Jun 2016 15:09:48 +0000 (17:09 +0200)
rc.d/rc.sysinit

index f7f0eeae19ffc1dda0272ef78a1fc740fc683d07..99bb078ee10ada6c3495557a28e994ac5033dd49 100755 (executable)
@@ -409,7 +409,7 @@ if ! is_yes "$VSERVER" && [[ "$container" != lxc* ]]; then
        parse_cmdline
 
        if [ -d /run ]; then
-               is_fsmounted tmpfs /run || mount -n -t tmpfs run /run
+               is_fsmounted tmpfs /run || mount -n -t tmpfs run /run -o mode=0755,noexec,nosuid,nodev
        fi
 
        # Early sysctls
@@ -680,7 +680,7 @@ if ! is_yes "$VSERVER" && [[ "$container" != lxc* ]]; then
                mount -f -t devtmpfs devtmpfs /dev 2> /dev/null
        fi
        if is_fsmounted tmpfs /run; then
-               mount -f -t tmpfs run /run 2> /dev/null
+               mount -f -t tmpfs run /run -o mode=0755,noexec,nosuid,nodev 2> /dev/null
        fi
 
        if is_fsmounted usbfs /proc/bus/usb; then
This page took 0.420698 seconds and 4 git commands to generate.