b149fff Don't configure KEYRING ccache in containers

5 files Authored by cheimes 5 years ago, Committed by tdudlak 5 years ago,
    Don't configure KEYRING ccache in containers
    
    Kernel keyrings are not namespaced yet. Keyrings can leak into other
    containers. Therefore keyrings should not be used in containerized
    environment.
    
    Don't configure Kerberos to use KEYRING ccache backen when a container
    environment is detected by systemd-detect-virt --container.
    
    Fixes: https://pagure.io/freeipa/issue/7807
    Signed-off-by: Christian Heimes <cheimes@redhat.com>
    Reviewed-By: Rob Crittenden <rcritten@redhat.com>
    Reviewed-By: Tibor Dudlak <tdudlak@redhat.com>
    Reviewed-By: Oleg Kozlov <okozlov@redhat.com>
    
        
file modified
+1 -0
file modified
+8 -0
file modified
+22 -0
file modified
+9 -1