Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-104046

Add `root.transient-ro = true`

Linking RHIVOS CVEs to...Migration: Automation ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Normal Normal
    • rhel-10.1
    • rhel-9.6, rhel-10.1
    • ostree
    • None
    • No
    • Low
    • 1
    • rhel-coreos
    • 5
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • Bootc Sprint #14
    • Unspecified
    • Unspecified
    • Unspecified

      See https://github.com/bootc-dev/bootc/discussions/1036

      Add `root = transient-ro`

      Like `root = transient` but we'd allocate the overlayfs upper, but still keep it read-only by default. This would make it easy for code running in the real root to unshare the mount namespace, mount it writable and mutate it while still keeping it read-only for most use cases. This would be a pretty easy addition to ostree-prepare-root.

              walters@redhat.com Colin Walters
              walters@redhat.com Colin Walters
              CoreOS Bot CoreOS Bot
              CoreOS QE Bot CoreOS QE Bot
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: