]> git.ipfire.org Git - thirdparty/systemd.git/commit
pid1: make MaxConnectionsPerSource= also work for AF_UNIX sockets
authorLennart Poettering <lennart@poettering.net>
Wed, 7 Feb 2024 09:11:44 +0000 (10:11 +0100)
committerLennart Poettering <lennart@poettering.net>
Mon, 12 Feb 2024 10:57:16 +0000 (11:57 +0100)
commit48930a5ded1a35ccebe11a4c904f298be708ad07
tree5d3ddab8c6033e0bbf8eec2015d548f7a33aeaf3
parentf43330eace215d1166eea23666d329af992eaa40
pid1: make MaxConnectionsPerSource= also work for AF_UNIX sockets

The setting currently puts limits on connections per IP address and
AF_UNIX CID. Let's extend it to cover AF_UNIX too, where it puts a limit
on connections per UID.

This is particularly useful for the various Accept=yes Varlink services
we now have, as it means, the number of per-user instance services
cannot grow without bounds.
man/systemd.socket.xml
src/core/socket.c