From: Lennart Poettering Date: Fri, 8 Apr 2022 16:43:50 +0000 (+0200) Subject: update TODO X-Git-Tag: v251-rc2~38^2 X-Git-Url: http://git.ipfire.org/gitweb.cgi?a=commitdiff_plain;h=refs%2Fpull%2F23170%2Fhead;p=thirdparty%2Fsystemd.git update TODO --- diff --git a/TODO b/TODO index f8902b07ef2..a300072296d 100644 --- a/TODO +++ b/TODO @@ -165,11 +165,6 @@ Features: don't query this unnecessarily in entirely uninitialized containers. (i.e. containers with empty /etc). -* systemd creds hookup with qemu fw_cfg. (Quite possibly might not need any - code at all, given the fw_cfg stuff are just files, but we should then - document how to use it). Goal: provide symmetric ways to pass creds to nspawn - containers and qemu VMs. (maybe also pick up env vars from fw_cfg?) - * beef up sd_notify() to support AV_VSOCK in $NOTIFY_SOCKET, so that VM managers can get ready notifications from VMs, just like container managers from their payload. Also pick up address from qemu/fw_cfg if set there. @@ -535,14 +530,7 @@ Features: * expose MS_NOSYMFOLLOW in various places -* make LoadCredential= automatically find credentials in /etc/creds, - /run/creds, … and so on, if path component is unqualified - -* teach LoadCredential=/LoadCredentialEncrypted= to load credentials from - kernel cmdline, maybe: LoadCredentialEncrypted=foobar:proc-cmdline:foobar - * credentials system: - - acquire from kernel command line - acquire from EFI variable? - acquire via via ask-password? - acquire creds via keyring?