Systemd 232 Adds ProtectKernelModules, RemoveIPC, Other New Options

Written by Michael Larabel in systemd on 3 November 2016 at 07:38 PM EDT. 28 Comments
SYSTEMD
Lennart Poettering has announced the release of systemd 232 and as usual this new release is packing a significant amount of new features.

Systemd 232 adds many new options like RemoveIPC for ensuring IPC objects owned by the user/group get removed on exit, ProtectKernelModules to disable explicit load/unload operations of kernel modules, ProtectSystem now supports a "strict" mode, ProtectControlGroups to disable write access to /sys/fs/cgroup, support for dynamically creating users for the lifetime of a service, a MemorySwapMax option, support for mount/automount units to be created transiently, systemd-mount was added, /efi is now the mount point for EFI boot partition, and dozens of other changes.

For those wanting to learn more about the mass amounts of new functionality provided by systemd 232 can read the release announcement for a complete briefing.
Related News
About The Author
Michael Larabel

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.

Popular News This Week