From 2f8ca8337633a199aae9b4cdd71c66ed1c9529a5 Mon Sep 17 00:00:00 2001 From: Ophestra Date: Sat, 27 Dec 2025 09:17:14 +0900 Subject: cmd/sharefs: containerise filesystem daemon This replaces the forking daemonise libfuse function which prevents Go callbacks from calling into the runtime. This also enforces least privilege on the daemon process. Signed-off-by: Ophestra --- cmd/sharefs/test/test.py | 5 ----- 1 file changed, 5 deletions(-) (limited to 'cmd/sharefs/test') diff --git a/cmd/sharefs/test/test.py b/cmd/sharefs/test/test.py index 8be70993..969bfa56 100644 --- a/cmd/sharefs/test/test.py +++ b/cmd/sharefs/test/test.py @@ -33,11 +33,6 @@ check_bad_opts_output("allow_other", "sharefs: setuid and setgid must not be 0\n check_bad_opts_output("setuid=1023", "sharefs: setuid and setgid must not be 0\n", privileged=True) check_bad_opts_output("setgid=1023", "sharefs: setuid and setgid must not be 0\n", privileged=True) -# Bad backing directory: -check_bad_opts_output("clone_fd", "sharefs: cannot open source: no such file or directory\n", source="/proc/nonexistent") -check_bad_opts_output("clone_fd", "sharefs: cannot open source: not a directory\n", source="/proc/self/exe") -check_bad_opts_output("clone_fd", "sharefs: cannot open source: permission denied\n", source="/root") - # Make sure nothing actually got mounted: machine.fail("umount /mnt") machine.succeed("rmdir /mnt") -- cgit v1.3.1