f31522130f
Build system (5 gaps hardened): - COOKBOOK_OFFLINE defaults to true (fork-mode) - normalize_patch handles diff -ruN format - New 'repo validate-patches' command (25/25 relibc patches) - 14 patched Qt/Wayland/display recipes added to protected list - relibc archive regenerated with current patch chain Boot fixes (fixable): - Full ISO EFI partition: 16 MiB → 1 MiB (matches mini, BIOS hardcoded 2 MiB offset) - D-Bus system bus: absolute /usr/bin/dbus-daemon path (was skipped) - redbear-sessiond: absolute /usr/bin/redbear-sessiond path (was skipped) - daemon framework: silenced spurious INIT_NOTIFY warnings for oneshot_async services (P0-daemon-silence-init-notify.patch) - udev-shim: demoted INIT_NOTIFY warning to INFO (expected for oneshot_async) - relibc: comprehensive named semaphores (sem_open/close/unlink) replacing upstream todo!() stubs - greeterd: Wayland socket timeout 15s → 30s (compositor DRM wait) - greeter-ui: built and linked (header guard unification, sem_compat stubs removed) - mc: un-ignored in both configs, fixed glib/libiconv/pcre2 transitive deps - greeter config: removed stale keymapd dependency from display/greeter services - prefix toolchain: relibc headers synced, _RELIBC_STDLIB_H guard unified Unfixable (diagnosed, upstream): - i2c-hidd: abort on no-I2C-hardware (QEMU) — process::exit → relibc abort - kded6/greeter-ui: page fault 0x8 — Qt library null deref - Thread panics fd != -1 — Rust std library on Redox - DHCP timeout / eth0 MAC — QEMU user-mode networking - hwrngd/thermald — no hardware RNG/thermal in VM - live preload allocation — BIOS memory fragmentation, continues on demand
71 lines
1.9 KiB
DTD
71 lines
1.9 KiB
DTD
<!ELEMENT busconfig (user |
|
|
type |
|
|
fork |
|
|
keep_umask |
|
|
listen |
|
|
pidfile |
|
|
includedir |
|
|
servicedir |
|
|
servicehelper |
|
|
auth |
|
|
include |
|
|
policy |
|
|
limit |
|
|
selinux |
|
|
apparmor)*>
|
|
|
|
<!ELEMENT user (#PCDATA)>
|
|
<!ELEMENT listen (#PCDATA)>
|
|
<!ELEMENT includedir (#PCDATA)>
|
|
<!ELEMENT servicedir (#PCDATA)>
|
|
<!ELEMENT servicehelper (#PCDATA)>
|
|
<!ELEMENT auth (#PCDATA)>
|
|
<!ELEMENT type (#PCDATA)>
|
|
<!ELEMENT pidfile (#PCDATA)>
|
|
<!ELEMENT fork EMPTY>
|
|
<!ELEMENT keep_umask EMPTY>
|
|
|
|
<!ELEMENT include (#PCDATA)>
|
|
<!ATTLIST include
|
|
ignore_missing (yes|no) "no"
|
|
if_selinux_enabled (yes|no) "no"
|
|
selinux_root_relative (yes|no) "no">
|
|
|
|
<!ELEMENT policy (allow|deny)*>
|
|
<!ATTLIST policy
|
|
context (default|mandatory) #IMPLIED
|
|
user CDATA #IMPLIED
|
|
group CDATA #IMPLIED
|
|
at_console (yes|no) #IMPLIED>
|
|
|
|
<!ELEMENT allow EMPTY>
|
|
<!ATTLIST allow
|
|
user CDATA #IMPLIED
|
|
send CDATA #IMPLIED
|
|
receive CDATA #IMPLIED
|
|
own CDATA #IMPLIED
|
|
send_to CDATA #IMPLIED
|
|
receive_from CDATA #IMPLIED>
|
|
|
|
<!ELEMENT deny EMPTY>
|
|
<!ATTLIST deny
|
|
user CDATA #IMPLIED
|
|
send CDATA #IMPLIED
|
|
receive CDATA #IMPLIED
|
|
own CDATA #IMPLIED
|
|
send_to CDATA #IMPLIED
|
|
receive_from CDATA #IMPLIED>
|
|
|
|
<!ELEMENT limit (#PCDATA)>
|
|
<!ATTLIST limit name CDATA #REQUIRED>
|
|
|
|
<!ELEMENT selinux (associate)*>
|
|
<!ELEMENT associate EMPTY>
|
|
<!ATTLIST associate
|
|
own CDATA #REQUIRED
|
|
context CDATA #REQUIRED>
|
|
|
|
<!ELEMENT apparmor EMPTY>
|
|
<!ATTLIST apparmor
|
|
mode (required|enabled|disabled) "enabled">
|