NAME | Description | Configuration | SEE ALSO | COLOPHON |
|
|
RPM-UNSHARE(8) RPM-UNSHARE(8)
rpm-plugin-unshare - Unshare plugin for the RPM Package Manager
This plugin allows using various Linux-specific namespace-related technologies inside transactions, such as to harden and limit scriptlet access to resources.
This plugin implements the following configurables: %__transaction_unshare_paths A colon-separated list of paths to privately mount during scriptlet execution. Typical examples would be /tmp to protect against insecure temporary file usage inside scriptlets, and /home to prevent scriptlets from accessing user home directories. %__transaction_unshare_nonet Non-zero value disables network access during scriptlet execution. See rpm-plugins(8) on how to control plugins in general.
dbus-monitor(1), rpm-plugins(8)
This page is part of the rpm (RPM Package Manager) project. In‐
formation about the project can be found at
⟨https://github.com/rpm-software-management/rpm⟩. It is not known
how to report bugs for this man page; if you know, please send a
mail to man-pages@man7.org. This page was obtained from the
project's upstream Git repository
⟨https://github.com/rpm-software-management/rpm.git⟩ on
2024-06-14. (At that time, the date of the most recent commit
that was found in the repository was 2024-06-14.) If you
discover any rendering problems in this HTML version of the page,
or you believe there is a better or more up-to-date source for
the page, or you have corrections or improvements to the
information in this COLOPHON (which is not part of the original
manual page), send a mail to man-pages@man7.org
15 Sep 2023 RPM-UNSHARE(8)