diff options
| author | Ophestra Umiker <cat@ophivana.moe> | 2024-10-18 01:21:58 +0900 |
|---|---|---|
| committer | Ophestra Umiker <cat@ophivana.moe> | 2024-10-18 01:21:58 +0900 |
| commit | 65bd7d18dbf35216d0a70c102a732c6356caee85 (patch) | |
| tree | ca3b54f9f2180d56042d335806dec7e3aec138f7 /internal/app/share.runtime.go | |
| parent | 4ebb98649e8e05d88b71c629a9c1e023e51906ca (diff) | |
app/share: fix order to ensure SharePath before any of its subdirectories
shareTmpdirChild happened to request an ephemeral dir within SharePath and was called before shareRuntime which ensures that path. This commit moves SharePath initialisation to shareSystem and moves shareTmpdirChild into ShareSystem. Further cleanup and tests are desperately needed for the app package but for now this fix will have to do.
Signed-off-by: Ophestra Umiker <cat@ophivana.moe>
Diffstat (limited to 'internal/app/share.runtime.go')
| -rw-r--r-- | internal/app/share.runtime.go | 9 |
1 files changed, 0 insertions, 9 deletions
diff --git a/internal/app/share.runtime.go b/internal/app/share.runtime.go index 0c7149ed..79570e67 100644 --- a/internal/app/share.runtime.go +++ b/internal/app/share.runtime.go @@ -31,15 +31,6 @@ func (seal *appSeal) shareRuntime() { // ensure runtime directory ACL (e.g. `/run/user/%d`) seal.sys.UpdatePermType(system.User, seal.RuntimePath, acl.Execute) - // ensure Share (e.g. `/tmp/fortify.%d`) - // acl is unnecessary as this directory is world executable - seal.sys.Ensure(seal.SharePath, 0701) - - // ensure process-specific share (e.g. `/tmp/fortify.%d/%s`) - // acl is unnecessary as this directory is world executable - seal.share = path.Join(seal.SharePath, seal.id.String()) - seal.sys.Ephemeral(system.Process, seal.share, 0701) - // ensure process-specific share local to XDG_RUNTIME_DIR (e.g. `/run/user/%d/fortify/%s`) seal.shareLocal = path.Join(seal.RunDirPath, seal.id.String()) seal.sys.Ephemeral(system.Process, seal.shareLocal, 0700) |
