nixpkgs/nixos/modules
Joachim Fasting 5f6dbe1a5a
grsecurity: add option to disable chroot caps restriction
The chroot caps restriction disallows chroot'ed processes from running
any command that requires `CAP_SYS_ADMIN`, breaking `nixos-rebuild`. See
e.g., https://github.com/NixOS/nixpkgs/issues/15293

This significantly weakens chroot protections, but to break
nixos-rebuild out of the box is too severe.

(cherry picked from commit d4d7bfe07b)
2016-05-15 11:06:50 +02:00
..
config Add kerberos mappings for MIT exchange server 2016-05-11 09:09:34 -04:00
hardware facetimehd: Only unload module if it is loaded 2016-04-23 11:59:00 -05:00
i18n/inputMethod fcitx: show available engines in module description 2016-02-28 07:12:55 -06:00
installer nixos-generate-config: lower priority of nix.maxJobs 2016-04-12 08:10:31 +02:00
misc nixos.locate: fix update-locatedb service failure 2016-04-14 15:38:53 +02:00
profiles Fix the boot-ec2-config test 2016-03-31 13:32:56 +02:00
programs ssh: Fix support for ssh-dss host keys 2016-04-01 16:04:15 +02:00
security grsecurity: add option to disable chroot caps restriction 2016-05-15 11:06:50 +02:00
services Fixing nfsd service, wait on local-fs. 2016-05-09 14:26:49 +02:00
system nixos/stage-1: Don't kill kernel threads 2016-05-06 22:06:34 +02:00
tasks nixos/filesystems: Fix fs options type error 2016-03-30 21:51:10 +02:00
testing test-instrumentation.nix: Only clear $PAGER in the backdoor shell 2016-02-23 11:56:09 +01:00
virtualisation Update EC2 AMIs to 16.03.659.011ea84 2016-05-09 19:39:12 +02:00
module-list.nix Revert "Merge pull request #14262 from peterhoeg/flexget" 2016-04-13 02:53:28 +02:00
rename.nix gitlab: 8.0.5 -> 8.5.0, service improvements 2016-02-26 07:08:31 +01:00