TODO revision 91f4347ef7bde17418b365ed3a97a752fe65bd50
8e2f5a54575e4da16c524b6c45cba19a4ad00070Nicholas C. Zakas* Should systemctl status \* work on all unit types, not just .service?
dccf3aebe7d408b6ba58f67cc6793da9dcbb4696Nicholas* Dangling symlinks of .automount unit files in .wants/ directories, set up
dccf3aebe7d408b6ba58f67cc6793da9dcbb4696Nicholas automount points even when the original .automount file did not exist
dccf3aebe7d408b6ba58f67cc6793da9dcbb4696Nicholas anymore. Only the .mount unit was still around.
dccf3aebe7d408b6ba58f67cc6793da9dcbb4696Nicholas* ExecStart with unicode characters fails in strv_split_quoted:
f6d5fae9a8e0cb7ad096e821b651d3cd51d88024Nicholas Environment=ONE='one' "TWO='two two' too" THREE=
f6d5fae9a8e0cb7ad096e821b651d3cd51d88024Nicholas ExecStart=/bin/python3 -c 'import sys;print(sys.argv)' $ONE $TWO $THREE
f6d5fae9a8e0cb7ad096e821b651d3cd51d88024Nicholas* MEMORY return code is overloaded for syntax errors in the command line.
f6d5fae9a8e0cb7ad096e821b651d3cd51d88024Nicholas str_split_quoted() should return a real return code, so spawn_child can
f6d5fae9a8e0cb7ad096e821b651d3cd51d88024Nicholas report the failure properly.
3311c55c55c920279703d40fac28a11fe9d8494cNicholas* Fedora: add an rpmlint check that verifies that all unit files in the RPM are listed in %systemd_post macros.
9062ea13d64c4cc70df35e5e10a77e55f2029d41Nicholas* Fedora: move kernel image to /usr/lib/modules/, kernel-install will take care of populating /boot
3311c55c55c920279703d40fac28a11fe9d8494cNicholas* Fedora: remove /etc/resolv.conf tmpfiles hack
300ddd61d98200ad4f5bfe82c94ba0a802349bdaNicholas* wiki: update journal format documentation for lz4 additions
359c147bb7d734b478b47d664e9f09e5f2f47cf1Nicholas* When lz4 gets an API for lz4 command output, make use of it to
359c147bb7d734b478b47d664e9f09e5f2f47cf1Nicholas compress coredumps in a way compatible with /usr/bin/lz4.
52573a9e39b00926b9b978f85340102df4b4063dNicholas* Port various tools to make use of verbs.[ch], where applicable
52573a9e39b00926b9b978f85340102df4b4063dNicholas* Check all invocations of access() and consider turning them into laccess()
0b5e1d37b52292808888e5c0674f90c2bbc3c210Nicholas* "machinectl run" that works like systemd-run, but allocates a pty in the container and attached the service to it
b5983d53e5f50f3137991a80821078a32a4be3b3Nicholas C. Zakas* "machinectl start/enable/disable foo" as aliases for "systemctl start/enable/disable systemd-nspawn@foo.service"
b5983d53e5f50f3137991a80821078a32a4be3b3Nicholas C. Zakas* "machinectl snapshot" to make a snapshot of a tree or container into /var/lib/containers
cd4f0c50c6a7faa3fd8e38236929bb9b37bc11b7Nicholas C. Zakas* "machinectl rm" to remove a container tree from /var/lib/containers
b33d3bf66f037e3c87d1b857d3706eee0072e0cdNicholas* "machinectl history"
8e2f5a54575e4da16c524b6c45cba19a4ad00070Nicholas C. Zakas* "machinectl diff"
8e2f5a54575e4da16c524b6c45cba19a4ad00070Nicholas C. Zakas* "machinectl status" should show 10 most recent log lines of both the host logs of the unit of the machine, plus the logs generated in the machine
7a2fdaed1646e4131f96888dce8170e96e79a5b4Nicholas C. Zakas* make "machinectl login" use a new machined call AllocateMachinePty() or so to get a pty in a machine. That would open up logins to unprivileged clients
7a2fdaed1646e4131f96888dce8170e96e79a5b4Nicholas C. Zakas* add transparent btrfs pool in a loopback file in /var if btrfs operations (such as systemd-import pull-dkr) are used and /var is not a btrfs file system
7a2fdaed1646e4131f96888dce8170e96e79a5b4Nicholas C. Zakas* machined: open up certain commands to unprivileged clients via polkit
6eccb99d95a457b8714d60222b7bbc2ebaa0c1f2Nicholas C. Zakas* hostnamectl: show root image uuid
f28a71a935fd9c3a101c8f45f192a7996c62ef2fNicholas C. Zakas* sysfs set api in libudev is not const
8e2f5a54575e4da16c524b6c45cba19a4ad00070Nicholas C. Zakas* Find a solution for SMACK capabilities stuff:
b33d3bf66f037e3c87d1b857d3706eee0072e0cdNicholas http://lists.freedesktop.org/archives/systemd-devel/2014-December/026188.html
8e2f5a54575e4da16c524b6c45cba19a4ad00070Nicholas C. Zakas* port libmount hookup to use API's own inotify interface, as soon as that is table in libmount
* as soon as we have kdbus, and sender timestamps, revisit coalescing multiple parallel daemon reloads:
* set $REMOTE_IP (or $REMOTE_ADDR/$REMOTE_PORT) environment variable when doing per-connection socket activation. use format introduced by xinetd or CGI for this
* the install state probably shouldn't get confused by generated units, think dbus1/kdbus compat!
* in systemctl list-unit-files: show the install value the presets would suggest for a service in a third column
* add "systemctl start -v foobar.service" that shows logs of a service
* firstboot: make it useful to be run immediately after yum --installroot to set up a machine. (most specifically, make --copy-root-password work even if /etc/passwd already exists
* timesyncd + resolved: add ugly bus calls to set NTP and DNS servers per-interface, for usage by NM
* add infrastructure to allocate dynamic/transient users and UID ranges, for use in user-namespaced containers, per-seat gdm login screens and gdm guest sessions
* machined: add an API so that libvirt-lxc can inform us about network interfaces being removed or added to an existing machine
* maybe add support for specifier expansion in user.conf, specifically DefaultEnvironment=
* introduce systemd-timesync-wait.service or so to sync on an NTP fix?
* systemd --user should issue sd_notify() upon reaching basic.target, not on becoming idle
* configure.ac pretends dbus was optional but actually hardcodes use of dbus' pkg-config file to determine various dbus dirs such as policy and activation dirs
* consider showing the unit names during boot up in the status output, not just the unit descriptions
* dhcp: do we allow configuring dhcp routes on interfaces that are not the one we got the dhcp info from?
* maybe support a new very "soft" reboot mode, that simply kills all processes, disassembles everything, flushes /run and sysvipc, and then reexecs systemd again
* systemd.show_status= should probably have a mode where only failed
- the DHCP lease data (such as NTP/DNS) is still made available when
- option 15, domain name and/or option 119, search list
- option 12, host name and/or option 81, fqdn
- option 252, configure http proxy (PAC/wpad)
- add display of private key types (http://tools.ietf.org/html/rfc4034#appendix-A.1.1)?
* Allow multiple ExecStart= for all Type= settings, so that we can cover rescue.service nicely
- nspawn/gpt-generator: introduce new gpt partition type for /usr
- fstab-generator: support systemd.volatile=yes|no|state on the kernel cmdline, too, similar to nspawn's --volatile=
* generator that automatically discovers btrfs subvolumes, identifies their purpose based on some xattr on them.
* timer units: actually add extra delays to timer units with high AccuracySec values, don't start them already when we are awake...
* figure out a nice way how we can let the admin know what child/sibling unit causes cgroup membership for a specific unit
* For timer units: add some mechanisms so that timer units that trigger immediately on boot do not have the services
* Run most system services with cgroupfs read-only and procfs with a more secure mode (doesn't work, since the hidepid= option is per-pid-namespace, not per-mount)
/proc/$PID/exe
a tiny process that joins the namespace and creates/binds the socket
to allow Chown/chgrp on sockets without requiring NSS in PID 1.
- manager property enumeration was broken when systemd moved to /usr/lib/
- add field to transient units that indicate whether systemd or somebody else saves/restores its settings, for integration with libvirt
* Automatically configure swap partition to use for hibernation by looking for largest swap partition on the root disk?
* libsystemd-journal, libsystemd-login, libudev: add calls to easily attach these objects to sd-event event loops
* rfkill,backlight: we probably should run the load tools inside of the udev rules so that the state is properly initialized by the time other software sees it
* After coming back from hibernation reset hibernation swap partition using the /dev/snapshot ioctl APIs
* make sure gdm does not use multi-user-x but the new default X configuration file, and then remove multi-user-x from systemd
* man: the documentation of Restart= currently is very misleading and suggests the tools from ExecStartPre= might get restarted.
- kdbus: PID/TID goes missing for method calls from outside the PID namespace?
- kdbus: the kernel should not allow messages to be delivered that have a reply serial != 0, reply-expect unset, but no appropriate window
without the active policy and should get a Wants=org.freedesktop.resolve1.busname to
- see if we can introduce a new sd_bus_get_owner_machine_id() call to retrieve the machine ID of the machine of the bus itself
- introduce sd_bus_emit_object_added()/sd_bus_emit_object_removed() that automatically includes the build-in interfaces in the list
- kdbus: matches against source or destination pids for an "strace -p"-like feel. Problem: The PID info needs to be available in userspace too...
- NameLost/NameAcquired obsolete
- kdbus: add counter for refused unicast messages that is passed out via the RECV ioctl. SImilar to the counter for dropped multicast messages we already have.
* dbus: when a unit failed to load (i.e. is in UNIT_ERROR state), we
* add a pam module that passes the hdd passphrase into the PAM stack and then expires it, for usage by gdm auto-login.
* maybe add a generator that looks for "systemd.run=" on the kernel cmdline for container usercases...
* systemd-inhibit: make taking delay locks useful: support sending SIGINT or SIGTERM on PrepareForSleep()
* journal-or-kmsg is currently broken? See reverted commit 4a01181e460686d8b4a543b1dfa7f77c9e3c5ab8.
* remove any syslog support from log.c -- we probably cannot do this before split-off udev is gone for good
* think about window-manager-run-as-user-service problem: exit 0 → activate shutdown.target; exit != 0 → restart service
- change bootctl to be backed by systemd-bootd to control temporary and persistent default boot goal plus efi variables
* fstab: add new mount option x-systemd-after=/foobar/waldo to allow manual dependencies to other mount points
* print a nicer explanation if people use variable/specifier expansion in ExecStart= for the first word
* mount: turn dependency information from /proc/self/mountinfo into dependency information between systemd units.
- logind: optionally, ignore idle-hint logic for autosuspend, block suspend as long as a session is around
- When we update the kernel all kind of hibernation should be prohibited until shutdown/reboot
- logind: wakelock/opportunistic suspend support
- we should probably handle SIGTERM/SIGINT to not leave dot files around, just in case
- session scopes/user unit: add RequiresMountsFor for the home directory of the user
- add Suspend() bus calls which take timestamps to fix double suspend issues when somebody hits suspend and closes laptop quickly.
* exec: when deinitializating a tty device fix the perms and group, too, not only when initializing. Set access mode/gid to 0620/tty.
- journal: when waiting for journal additions in the client always sleep at least 1s or so, in order to minimize wakeups
- add API to close/reopen/get fd for journal client fd in libsystemd-journal.
- fallback to /dev/log based logging in libsystemd-journal, if we cannot log natively?
- check if we can make journalctl by default use --follow mode inside of less if called without args?
- journal: add a setgid "systemd-journal" utility to invoke from libsystemd-journal, which passes fds via STDOUT and does PK access
- journactl: support negative filtering, i.e. FOOBAR!="waldo",
- journal: send out marker messages every now and then, and immediately sync with fdatasync() afterwards, in order to have hourly guaranteed syncs.
- journal-send.c, log.c: when the log socket is clogged, and we drop, count this and write a message about this when it gets unclogged again.
- journal: sanely deal with entries which are larger than the individual file size, but where the components would fit
- optionally support running journald from the command line for testing purposes in external projects
- journald: allow per-priority and per-service retention times when rotating/vacuuming
- journald: make use of uid-range.h to managed uid ranges to split
- journalctl: add the ability to look for the most recent process of a binary. journalctl /usr/bin/X11 --pid=-1 or so...
- man: clarify that time-sync.target is not only sysv compat but also useful otherwise. Same for similar targets
- add a man page containing packaging guidelines and recommending usage of things like Documentation=, PrivateTmp=, PrivateNetwork= and ReadOnlyDirectories=/etc /usr.
- document systemd-journal-flush.service properly
- documentation: recommend to connect the timer units of a service to the service via Also= in [Install]
- man: extend runlevel(8) to mention that runlevels suck, and are dead. Maybe add runlevel(7) with a note about that too
- print nice message from systemctl --failed if there are no entries shown, and hook that into ExecStartPre of rescue.service/emergency.service
- add new command to systemctl: "systemctl system-reexec" which reexecs as many daemons as virtually possible
- systemctl enable: fail if target to alias into does not exist? maybe show how many units are enabled afterwards?
- systemctl list-unit-files should list generated files (and probably with a new state "generated" for them, or so)
- when parsing calendar timestamps support the UTC timezone (even if we will not support arbitrary timezone specs, support UTC itself certainly makes sense), also support syntaxes such as +0200
* If we show an error about a unit (such as not showing up) and it has no Description string, then show a description string generated form the reverse of unit_name_mangle().
* clean up date formatting and parsing so that all absolute/relative timestamps we format can also be parsed
* on shutdown: move utmp, wall, audit logic all into PID 1 (or logind?), get rid of systemd-update-utmp-runlevel
* hostnamed: before returning information from /etc/machine-info.conf check the modification data and reread. Similar for localed, ...
* currently x-systemd.timeout is lost in the initrd, since crypttab is copied into dracut, but fstab is not
- refuses to boot containers without /etc/machine-id (OK?), and with empty /etc/machine-id (not OK).
- introduce machines.target to order after all nspawn instances
- support rd.luks.allow-discards= kernel cmdline params in cryptsetup generator
* after deserializing sockets in socket.c we should reapply sockopts and things
* move PID 1 segfaults to /var/lib/systemd/coredump?
* create /sbin/init symlinks from the build system
* properly handle loop back mounts via fstab, especially regards to fsck/passno
* initialize the hostname from the fs label of /, if /etc/hostname does not exist?
* when breaking cycles drop sysv services first, then services from /run, then from /etc, then from /usr
* ExecOnFailure=/usr/bin/foo
- add trigger --subsystem-match=usb/usb_device device
* when a service has the same env var set twice we actually store it twice and return that in systemctl show -p... We should only show the last setting
* add option to sockets to avoid activation. Instead just drop packets/connections, see http://cyberelk.net/tim/2012/02/15/portreserve-systemd-solution/
* save coredump in Windows/Mozilla minidump format
* support crash reporting operation modes (https://live.gnome.org/GnomeOS/Design/Whiteboards/ProblemReporting)
* default to actual 32-bit PIDs, via /proc/sys/kernel/pid_max
* when a bus name of a service disappears from the bus make sure to queue further activation requests
- init=/bin/sh vs. "emergency" mode, vs. "rescue" mode, vs. "multi-user" mode, vs. "graphical" mode, and the debug shell
- hooking a script into various stages of shutdown/rearly booot
- add documentation to systemd.daemon
- inbuilt piping support (essentially degenerate async)? see loopback-setup.c and other places
- add proper initrd support (in particular generate .network/.link files based on /proc/cmdline)
- investigate the usefulness of Confirm messages; i.e. are there any
- teach dbus to activate all services it finds in /etc/systemd/services/org-*.service
* dbus upstream still refers to dbus.target and should not
* /usr/bin/service should actually show the new command line
* fedora: suggest auto-restart on failure, but not on success and not on coredump. also, ask people to think about changing the start limit logic. Also point people to RestartPreventExitStatus=, SuccessExitStatus=
* fedora: F20: go timer units all the way, leave cron.daily for cron
* fedora: update policy to declare access mode and ownership of unit files to root:root 0644, and add an rpmlint check for it
* set_put(), hashmap_put() return values check. i.e. == 0 does not free()!