<feed xmlns='http://www.w3.org/2005/Atom'>
<title>hakurei/container/container.go, branch master</title>
<subtitle>low-level userspace tooling for Rosa OS</subtitle>
<id>http://src.rosa.moe/hakurei/atom/container/container.go?h=master</id>
<link rel='self' href='http://src.rosa.moe/hakurei/atom/container/container.go?h=master'/>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/'/>
<updated>2026-06-08T05:58:24Z</updated>
<entry>
<title>all: apply modernisers</title>
<updated>2026-06-08T05:58:24Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-06-08T05:19:11Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=f869ff95a12756de97827b4afd93763f9661f144'/>
<id>urn:sha1:f869ff95a12756de97827b4afd93763f9661f144</id>
<content type='text'>
Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>container: binfmt registration</title>
<updated>2026-05-07T06:55:19Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-05-07T06:40:47Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=575ef307ad5cedb13a514cd038a4880ab8c91242'/>
<id>urn:sha1:575ef307ad5cedb13a514cd038a4880ab8c91242</id>
<content type='text'>
This arranges for binfmt entries to be registered for the container.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>container: optionally map uid/gid 0 as init</title>
<updated>2026-05-07T06:15:47Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-05-07T06:15:28Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=d4144fcf7f9217d2a2dcec21202421d5fa9d4928'/>
<id>urn:sha1:d4144fcf7f9217d2a2dcec21202421d5fa9d4928</id>
<content type='text'>
Unfortunately required to work around flawed APIs like binfmt_misc.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>container: optionally suppress init verbosity</title>
<updated>2026-05-05T10:59:44Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-05-05T10:59:44Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=09d9f766a94c9261a7e6c4c24b52e718d6d5fe86'/>
<id>urn:sha1:09d9f766a94c9261a7e6c4c24b52e718d6d5fe86</id>
<content type='text'>
This change also removes verbose output no longer considered useful.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>internal/landlock: relocate from package container</title>
<updated>2026-04-10T14:56:45Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-04-10T14:56:45Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=b39064037625d1757a65913086ec3a247ad5bb29'/>
<id>urn:sha1:b39064037625d1757a65913086ec3a247ad5bb29</id>
<content type='text'>
This is not possible to use directly, so remove it from the public API.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>container: unexport PR_SET_NO_NEW_PRIVS wrapper</title>
<updated>2026-04-10T14:45:51Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-04-10T14:45:51Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=ad2c9f36cddfd8adcd06fbe9238d176a8eb89614'/>
<id>urn:sha1:ad2c9f36cddfd8adcd06fbe9238d176a8eb89614</id>
<content type='text'>
This is subtle to use correctly. It also does not make sense as part of the container API.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>container: do not set static deadline</title>
<updated>2026-04-07T08:00:20Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-04-07T07:50:33Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=0558032c2d6b467b4807e69db74e24c5577c34bc'/>
<id>urn:sha1:0558032c2d6b467b4807e69db74e24c5577c34bc</id>
<content type='text'>
This usually ends up in the buffer, or completes well before the deadline, however this can still timeout on a very slow system.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>container: remove setup pipe helper</title>
<updated>2026-04-07T07:05:33Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-04-07T06:50:59Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=062edb3487c1cc116cae78bf77420b65c43517d1'/>
<id>urn:sha1:062edb3487c1cc116cae78bf77420b65c43517d1</id>
<content type='text'>
The API forces use of finalizer to close the read end of the setup pipe, which is no longer considered acceptable. Exporting this as part of package container also imposes unnecessary maintenance burden.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>container: skip landlock on hostnet</title>
<updated>2026-04-07T05:36:44Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-04-07T05:36:44Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=c758e762bd0334b6f86fbc41ab3223b9115e9982'/>
<id>urn:sha1:c758e762bd0334b6f86fbc41ab3223b9115e9982</id>
<content type='text'>
This overlaps with net namespace, so can be skipped without degrading security.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
<entry>
<title>fhs: move from container</title>
<updated>2026-03-17T06:56:36Z</updated>
<author>
<name>Ophestra</name>
<email>cat@gensokyo.uk</email>
</author>
<published>2026-03-17T06:56:36Z</published>
<link rel='alternate' type='text/html' href='http://src.rosa.moe/hakurei/commit/?id=722989c68256469963aee963bed9c6ab4bf55b67'/>
<id>urn:sha1:722989c68256469963aee963bed9c6ab4bf55b67</id>
<content type='text'>
This package is not container-specific.

Signed-off-by: Ophestra &lt;cat@gensokyo.uk&gt;
</content>
</entry>
</feed>
