mirror of
https://codeberg.org/andyscott/s6-scripts.git
synced 2024-09-19 10:58:06 -04:00
Change tomoyo to oneshot, tomoyo-auditd cannot run in foreground
This commit is contained in:
parent
bec72c74e3
commit
b776ef59c4
10 changed files with 6 additions and 23 deletions
|
@ -1 +0,0 @@
|
||||||
tomoyo-auditd-srv
|
|
|
@ -1 +0,0 @@
|
||||||
3
|
|
|
@ -1 +0,0 @@
|
||||||
tomoyo-auditd
|
|
|
@ -1,9 +0,0 @@
|
||||||
#!/bin/execlineb -P
|
|
||||||
envfile /etc/s6/config/tomoyo-auditd.conf
|
|
||||||
importas -sCuD "n3 s2000000 T" DIRECTIVES DIRECTIVES
|
|
||||||
ifelse { test -w /var/log } {
|
|
||||||
foreground { install -d -o s6log -g s6log /var/log/tomoyo-auditd }
|
|
||||||
s6-setuidgid s6log exec -c s6-log -d3 -b -- ${DIRECTIVES} /var/log/tomoyo-auditd
|
|
||||||
}
|
|
||||||
foreground { install -d -o s6log -g s6log /run/log/tomoyo-auditd }
|
|
||||||
s6-setuidgid s6log exec -c s6-log -d3 -b -- ${DIRECTIVES} /run/log/tomoyo-auditd
|
|
|
@ -1 +0,0 @@
|
||||||
longrun
|
|
|
@ -1 +0,0 @@
|
||||||
tomoyo-auditd-log
|
|
|
@ -1 +0,0 @@
|
||||||
longrun
|
|
|
@ -1,7 +1,5 @@
|
||||||
# Retrieve logs from a remote system (e.g. REMOTE="remote_ip:remote_port")
|
# Retrieve logs from a remote system (e.g. REMOTE="remote_ip:remote_port").
|
||||||
# Additonal options must still be configured in /etc/tomoyo/tools/auditd.conf
|
# Note that tomoyo-auditd still requires that we configure audit logs in
|
||||||
# See TOMOYO-AUDITD(8)
|
# /etc/tomoyo/tools/auditd.conf, see TOMOYO-AUDITD(8) or
|
||||||
|
# https://tomoyo.osdn.jp.
|
||||||
REMOTE=""
|
REMOTE=""
|
||||||
|
|
||||||
# This configures the directives used for s6-log in the log service.
|
|
||||||
DIRECTIVES="n3 s2000000 T"
|
|
||||||
|
|
1
tomoyo-tools/type
Normal file
1
tomoyo-tools/type
Normal file
|
@ -0,0 +1 @@
|
||||||
|
oneshot
|
|
@ -1,5 +1,4 @@
|
||||||
#!/bin/execlineb -P
|
#!/bin/execlineb -P
|
||||||
envfile /etc/s6/config/tomoyo-auditd.conf
|
envfile /etc/s6/config/tomoyo-auditd.conf
|
||||||
importas -sCuD "" REMOTE REMOTE
|
importas -uD "" REMOTE REMOTE
|
||||||
fdmove -c 2 1
|
|
||||||
exec tomoyo-auditd ${REMOTE}
|
exec tomoyo-auditd ${REMOTE}
|
Loading…
Reference in a new issue