From 56ca95e61639510c7dbd39ff512f80f626404969 Mon Sep 17 00:00:00 2001 From: Giuseppe Scrivano Date: Wed, 23 Sep 2020 12:36:35 +0200 Subject: [PATCH] NEWS: tag 0.15 Signed-off-by: Giuseppe Scrivano --- NEWS | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) diff --git a/NEWS b/NEWS index 388ae7d2f4..4502c5b994 100644 --- a/NEWS +++ b/NEWS @@ -1,3 +1,21 @@ +* crun-0.15 + +- add support for OCI unified cgroup v2. +- add json format option to `crun list`. +- get last kernel capability dynamically instead of using a build + time constant. +- enable all available cgroup controllers. +- support the seccomp SCMP_ACT_LOG action. +- support the seccomp SCMP_ACT_KILL_THREAD action. +- properly set a SELinux label for the mqueue mount. +- `crun kill` uses pidfd when supported. +- experimental support for seccomp notifications. +- fix bundle option for `crun create` and `crun run`. +- allow to declare path to config file. +- check /sys/kernel/security/apparmor when using AppArmor. +- doesn't accept type=bind alone anymore, but require either "bind" + or "rbind" to be present in the mount flags. + * crun-0.14.1 - fix a regression in crun-0.14 where openat2(2) would fail when bind