Go to file
Dustin e9b21b0ca0 Switch to "mcs" SELinux policy
We're going to want the ability for processes to have unique categories,
to enforce separation of container processes.  Gentoo's SELinux policy
supports both Multi-Category Security and Multi-Level Security modes,
although the latter does not seem to work out of the box.
2023-03-12 21:34:15 -05:00
overlay Switch to "mcs" SELinux policy 2023-03-12 21:34:15 -05:00
patches/ebuilds/sys-boot/grub wip: build u-boot with Portage 2023-03-12 12:47:36 -05:00
portage Switch to "mcs" SELinux policy 2023-03-12 21:34:15 -05:00
.gitignore Use Portage config directly from src dir 2023-03-12 12:47:36 -05:00
.gitmodules wip: build u-boot with Portage 2023-03-12 12:47:36 -05:00
Makefile build: Rebuild when Portage config changes 2023-03-12 12:53:16 -05:00
README.md Initial commit 2023-02-13 23:24:36 -06:00
build-all.sh Initial commit 2023-02-13 23:24:36 -06:00
build-grub.sh Support external build directory 2023-03-03 12:36:15 -06:00
build-host-tools.sh Use Portage config directly from src dir 2023-03-12 12:47:36 -05:00
build-kernel.sh Use Portage config directly from src dir 2023-03-12 12:47:36 -05:00
build-rootfs.sh Switch to "mcs" SELinux policy 2023-03-12 21:34:15 -05:00
build-squashfs.sh Support external build directory 2023-03-03 12:36:15 -06:00
build-uboot.sh Support external build directory 2023-03-03 12:36:15 -06:00
build-update.sh Support external build directory 2023-03-03 12:36:15 -06:00
build.packages wip: build u-boot with Portage 2023-03-12 12:47:36 -05:00
build.sh Use Portage config directly from src dir 2023-03-12 12:47:36 -05:00
busybox.symlinks Enable SELinux 2023-03-12 12:34:12 -05:00
config Enable SELinux 2023-03-12 12:34:12 -05:00
config.txt Initial commit 2023-02-13 23:24:36 -06:00
genimage.cfg Support external build directory 2023-03-03 12:36:15 -06:00
genimage.sh Support external build directory 2023-03-03 12:36:15 -06:00
grub.cfg Initial commit 2023-02-13 23:24:36 -06:00
host-tools.packages Enable SELinux 2023-03-12 12:34:12 -05:00
install-update.sh install-update: Fix error message in die function 2023-03-08 11:12:00 -06:00
install.packages Begin custom SELinux policy module 2023-03-12 12:47:36 -05:00
installonly.packages Simplify specifying packages to build/install 2023-03-08 11:12:00 -06:00
linux.config Enable SELinux 2023-03-12 12:34:12 -05:00
ocivm.sh vm-build: Add script to build in a microvm 2023-03-08 11:12:00 -06:00
patch-uboot.sh uboot: Apply patches outside container 2023-02-13 23:24:36 -06:00
podman-build.sh Add start-container.sh script 2023-02-21 09:58:18 -06:00
post-build.sh wip: build u-boot with Portage 2023-03-12 12:47:36 -05:00
prepare.sh Use Portage config directly from src dir 2023-03-12 12:47:36 -05:00
rebuild-pkg.sh rebuild-pkg: Script to rebuild/reinstall a binpkg 2023-03-12 12:50:05 -05:00
setup-local-repo.sh wip: build u-boot with Portage 2023-03-12 12:47:36 -05:00
squashfs.exclude Omit /var/.updated from rootfs image 2023-03-12 12:53:16 -05:00
start-container.sh Add start-container.sh script 2023-02-21 09:58:18 -06:00
vm-build.sh vm-build: Add script to build in a microvm 2023-03-08 11:12:00 -06:00

README.md

Errors

SWIOTLB Buffer

OF: reserved mem: failed to allocate memory for node … Can not allocate SWIOTLB buffer earlier and can't now provide you with the DMA bounce buffer

Ensure start_x=1 is in config.txt and start_file/fixup_file are not specified.

U-Boot: Overwrite Reserved Memory

** Reading file would overwrite reserved memory **

Set CONFIG_LMB_MAX_REGIONS=16 in u-boot/.config