提交 480a5789 编写于 作者: X xionglei6

init: fix sandbox bugs

Signed-off-by: Nxionglei6 <xionglei6@huawei.com>
上级 779e1987
...@@ -21,6 +21,7 @@ ...@@ -21,6 +21,7 @@
"chmod 0771 /data", "chmod 0771 /data",
"mkdir /data/service 0711 root root", "mkdir /data/service 0711 root root",
"mkdir /data/service/el0 0711 root root", "mkdir /data/service/el0 0711 root root",
"mount configfs none /config nodev noexec nosuid",
"mksandbox system", "mksandbox system",
"mksandbox chipset", "mksandbox chipset",
"load_persist_params ", "load_persist_params ",
......
...@@ -50,9 +50,6 @@ void MountBasicFs(void) ...@@ -50,9 +50,6 @@ void MountBasicFs(void)
if (mount("tmpfs", "/storage", "tmpfs", MS_NOEXEC | MS_NODEV| MS_NOSUID, "mode=0755") != 0) { if (mount("tmpfs", "/storage", "tmpfs", MS_NOEXEC | MS_NODEV| MS_NOSUID, "mode=0755") != 0) {
INIT_LOGE("Mount storage failed. %s", strerror(errno)); INIT_LOGE("Mount storage failed. %s", strerror(errno));
} }
if (mount("none", "/config", "configfs", MS_NOEXEC | MS_NODEV| MS_NOSUID, "mode=0755") != 0) {
INIT_LOGE("Mount configfs failed. %s", strerror(errno));
}
if (mkdir("/dev/pts", S_IRWXU | S_IRGRP | S_IXGRP | S_IROTH | S_IXOTH) != 0) { if (mkdir("/dev/pts", S_IRWXU | S_IRGRP | S_IXGRP | S_IROTH | S_IXOTH) != 0) {
INIT_LOGE("mkdir /dev/pts failed. %s", strerror(errno)); INIT_LOGE("mkdir /dev/pts failed. %s", strerror(errno));
} }
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册