Siideynta maareeyaha nidaamka systemd 242

[:ru]

Laba bilood oo horumar ah ka dib soo bandhigay siidaynta maamulaha nidaamka systemd 242. Astaamaha cusub waxaa ka mid ah taageerada tunnel-ka L2TP, awoodda lagu xakameynayo habdhaqanka systemd-logind ee dib u bilaabista iyada oo loo marayo doorsoomayaasha deegaanka, taageerada qaybaha kabaha XBOOTLDR ee la dheereeyey ee kor u qaadista / kabaha, awoodda lagu dhejiyo qaybta xididka ee dulsaaryada, iyo tiro badan goobaha cusub ee noocyada kala duwan ee cutubyada.

Isbeddellada ugu waaweyn:

  • systemd-networkd waxa ay taageertaa tunnelyada L2TP;
  • sd-boot iyo bootctl waxay taageeraan XBOOTLDR (Extended Boot Loader) qaybo ku rakiban /boot, marka lagu daro qaybaha ESP ee ku rakiban /efi ama /boot/efi. Kernels, settings, initrd iyo sawirada EFI hadda waxa laga soo rari karaa labada qaybood ee ESP iyo XBOOTLDR. Isbeddelkani waxa uu u oggolaanayaa isticmaalka bootloader-ka sd-boot ee xaalado badan oo muxaafid ah, marka bootloader laftiisa la dhigo ESP, iyo kernels bootable iyo xogta la xidhiidha waxaa loo raray qayb gaar ah;
  • Waxaa lagu daray awoodda lagu bootin karo "systemd.volatile=overlay" ikhtiyaarka loo gudbiyay kernel-ka, kaas oo kuu ogolaanaya inaad dhigato qaybta xididka ee dusha sare oo aad ku habayso shaqada korka sawirka akhriska-kaliya ee tusaha xididka oo leh isbeddelo ku qoran tusaha kala duwan ee tmpfs (isbeddellada qaabayntan ayaa lumaya ka dib dib u bilaabashada) . Marka la barbardhigo, "--volatile=overlay" doorashada ayaa lagu daray systemd-nspawn si loogu isticmaalo shaqada la midka ah ee weelasha;
  • Waxaa lagu daray "-oci-bundle" ikhtiyaarka nidaamkad-nspawn si loogu oggolaado isticmaalka xirmooyinka runtime si ay awood ugu yeelato socodsiinta weelasha go'doonsan ee u hoggaansamaya qeexida Initiative Container (OCI). Taageerada xulashooyinka kala duwan ee lagu qeexay qeexitaanka OCI ayaa loo soo jeediyay isticmaalka khadka taliska iyo unugyada nspawn, tusaale ahaan, goobaha "--aan la heli karin" iyo "aan la heli karin" waxaa loo isticmaali karaa in laga saaro qaybo ka mid ah nidaamka faylka, iyo "- Ikhtiyaarada -console" ayaa lagu daray si loo habeeyo durdurrada wax soo saarka caadiga ah iyo "—tuubo";
  • Awood lagu daray in lagu xakameeyo hab-dhaqanka soo gelida hab-dhaqanka iyada oo loo marayo doorsoomayaasha deegaanka: $SYSTEMD_REBOOT_ TO_FIRMWARE_SETUP,
    $SYSTEMD_REBOOT_ TO_BOOT_LOADER_MENU iyo
    $SYSTEMD_REBOOT_TO_BOOT_LOADER_ENTRY. Adigoo isticmaalaya doorsoomayaashan, waxaad ku xidhi kartaa maamulayaashaada habsocodka dib-u-kicinta (/run/systemd/reboot-to-firmware-setup, /run/systemd/reboot-to-boot-loader-menu iyo)
    /run/systemd/reboot-to-boot-loader-entry) ama gabi ahaanba dami (marka loo dhigo been);

  • Waxaa lagu daray "--boot-load-menu="ikhtiyaarada" si loo "systemctl reboot" amarka iyo
    "--boot-loader-entry=", taasoo kuu ogolaanaysa inaad doorato shay gaar ah oo boot menu ah ama qaabka boot ka dib dib-u-kicinta;

  • Waxaa lagu daray amar gooni-gooni ah sanduuqa-cammuudka cusub "RestrictSUIDSGID=" kaas oo adeegsada seccomp si looga hortago abuurista faylal leh calanka SUID/SGID;
  • Xayiraadaha caadiga ah ee la fuliyay "NoNewPrivileges" iyo "RestrictSUIDSGID" ee adeegyada leh jiilka aqoonsiga isticmaalaha firfircoon ("DynamicUser");
  • Habka MACAddressPolicy=goobaha joogtada ah ee faylasha .link waa la bedelay si loo daboosho qalab badan. Wajiyada isku xidhka buundooyinka, tunnels (tun, tap) iyo isku xidhka la isku daray (bond) iskuma aqoonsanayaan marka laga reebo magaca isku xidhka shabakada, sidaas darteed magacan hadda waxa loo isticmaalaa saldhig u ah xidhidhiyaha MAC iyo IPv4. Intaa waxaa dheer, goobta "MACAddressPolicy=random" ayaa lagu daray, kaas oo loo isticmaali karo in lagu xidho cinwaanada MAC iyo IPv4 qalabka si aan kala sooc lahayn;
  • Faylasha unugga ".qalabka" ee lagu sameeyay systemd-fstab-generator hadda kuma jiraan cutubyada ".mount" ee u dhigma sida ku-tiirsanaanta qaybta "Wants=". Si fudud ku xidhida aaladda si toos ah uma soo daabiciso unugga buurta, laakiin cutubyadan oo kale ayaa weli la bilaabi karaa sababo kale dartood, sida qayb ka mid ah local-fs.target ama ku tiirsanaanta cutubyo kale oo ku xidhan local-fs.target;
  • Taageerada waji-xidhka ("*", iwm.) ayaa lagu daray "listworkctl list/status/lldp" amarada si loo shaandheeyo kooxo gaar ah oo shabakadaha isku xidha qayb magacooda ah;
  • Doorsoomiyaha deegaanka $PIDFILE hadda waxa la dejiyay iyadoo la isticmaalayo dariiqa saxda ah ee lagu habeeyey adeegyada 'PIDFile=;
  • Waxaa lagu daray server-yada Cloudflare dadweynaha (1.1.1.1) tirada kaydka DNS server-yada la isticmaalo marka DNS aasaasiga ah aan si cad loo qeexin. Si aad u tirtirto liiska kaydka DNS server-yada, waxaad isticmaali kartaa "-Ddns-servers=" ikhtiyaarka;
  • Marka la helo Kontoroolka Aaladda USB, maamule cusub oo usb-gadget.target ayaa si toos ah loo bilaabayaa (marka nidaamku ku socdo agagaarka USB);
  • Faylasha unugga, "CPUQuotaPeriodSec=" dejintu waa la hirgeliyey, kaas oo go'aaminaya muddada wakhtiga loo eegayo kootada wakhtiga CPU, oo lagu dejiyay "CPUQuota=" settings;
  • Faylasha unugga, "ProtectHostname=" dejinta waa la fuliyay, kaas oo ka mamnuucaya adeegyada beddelka macluumaadka ku saabsan magaca martida loo yahay, xitaa haddii ay haystaan ​​oggolaansho ku habboon;
  • Unug-faylal, "NetworkNamespacePath=" dejintu waa la hirgeliyey, kaas oo kuu ogolaanaya inaad ku xidho goobta magaca adeegyada ama cutubyada godad adigoo qeexaya dariiqa loo maro faylka magaca ee ku jira /proc pseudo-FS;
  • Waxaa lagu daray awoodda lagu baabi'inayo beddelka doorsoomayaasha deegaanka ee hababka la bilaabay iyadoo la adeegsanayo "ExecStart=" dejinta iyadoo lagu darayo ":" ka hor amarka bilowga;
  • Saacadaha (.cutubyada saacada), calamada cusub "OnClockChange=" iyo
    "OnTimezoneChange=", kaas oo aad ku xakameyn karto wicitaanka cutubka markaad beddesho wakhtiga nidaamka ama wakhtiga;

  • Waxaa lagu daray goobo cusub "ConditionMemory=" iyo" ConditionCPUs=" kuwaas oo go'aamiya shuruudaha loogu yeero unugga iyadoo ku xiran xajmiga xusuusta iyo tirada xudunta CPU (tusaale ahaan, adeegga degdegga ah ee kheyraadka waxaa la bilaabi karaa oo keliya haddii qaddarka loo baahan yahay). RAM waa la heli karaa;
  • Unug cusub oo waqti-set.target ah ayaa lagu daray oo aqbala wakhtiga nidaamka deegaanka loo dejiyay, iyada oo aan la isticmaalin dib-u-heshiisiinta server-yada wakhtiga saxda ah ee dibadda iyadoo la adeegsanayo cutubka time-sync.target. Cutubka cusub waxa isticmaali kara adeegyada u baahan saxnaanta saacad maxalli ah oo aan la socon;
  • Waxaa lagu daray "--show-transaction" ikhtiyaarka "systemctl start" iyo amarro la mid ah si loo muujiyo soo koobida dhammaan shaqooyinka lagu daray safka sababtoo ah hawlgalka la codsaday;
  • systemd-networkd waxa ay hirgelisay qeexitaan loogu talagalay dawlad cusub, 'adoonsan', oo loo isticmaalo halkii 'hoosay' ama 'sidee' isku-xidhka shabakadaha kuwaas oo qayb ka ah isku xirka la isku daray ama buundooyinka shabakada. Isku xirka aasaasiga ah, haddii ay dhacdo dhibaatooyin mid ka mid ah isku xirka xarunta, gobolka 'hoos u qaaday-qaade' ayaa lagu daray;
  • Lagu daray "IgnoreCarrierLoss=" ikhtiyaarka ah .unugyada shabakada si loo badbaadiyo goobaha shabakada haddii xiriirku xumaado;
  • Iyada oo loo marayo goobta "RequiredForOnline=" ee cutubyada shabakada, waxaad hadda dejin kartaa xiriirka ugu yar ee la oggol yahay ee loo baahan yahay si loogu wareejiyo interface-ka "online" oo aad kiciso maamulaha systemd-networkd-wait-online;
  • Waxaa lagu daray "- wax" ikhtiyaar si loo habeeyo-networkd-wait-online si loo sugo mid ka mid ah isku xirka shabakadaha la cayimay inay diyaar noqdaan halkii dhammaan, iyo "-operational-state=" doorasho si loo qeexo xaaladda isku xirka taas oo muujinaysa in waa diyaar;
  • Waxaa lagu daray "UseAutonomousPrefix=" iyo"UseOnLinkPrefix=" settings ka .network unugyo loo isticmaali karo in la iska indho-tiro horgalayaasha marka la helayo
    ogeysiis ka yimid router IPv6 (RA, Xayeysiiska Router);

  • Waxaa lagu daray "MulticastFlood=", "NeighborSuppression=" iyo "Learning=" settings in .network units si loo beddelo xuduudaha hawlgalka buundada network, iyo sidoo kale "TripleSampling=" dejinta si loo beddelo habka TRIPLE-SAMPLING ee is-dhexyaalka CAN;
  • Waxaa lagu daray "PrivateKeyFile=" iyo "PresharedKeyFile=" dejinta cutubyada .netdev, kuwaas oo aad ku qeexi karto furayaasha gaarka ah iyo kuwa la wadaago (PSK) ee WireGuard VPN interfaces;
  • Lagu daray isla-cpu-crypt iyo soo gudbin-ka-crypt-cpus fursadaha /etc/crypttab si loo xakameeyo habdhaqanka jadwalaha marka loo guurayo shaqooyinka sirta laxidhiidha ee udhaxeeya xudunta CPU;
  • systemd-tmpfiles waxay bixisaa habaynta faylka qufulka ka hor inta aan la samayn hawlaha tusaha leh faylalka ku meel gaadhka ah, taas oo kuu ogolaanaysa inaad joojiso shaqada nadiifinta faylalka duugoobay inta lagu jiro ficilada qaarkood (tusaale ahaan, marka la furayo kaydka daamurka gudaha / tmp, aad u da' weyn faylasha waa la furi karaa oo aan la tirtiri karin ka hor dhammaadka ficilka iyaga;
  • Amarka "systemd-analyze cat-config" wuxuu bixiyaa awoodda lagu falanqeynayo qaabeynta oo loo kala qaybiyay dhowr faylal, tusaale ahaan, isticmaalayaasha iyo nidaamka horudhaca, waxa ku jira tmpfiles.d iyo sysusers.d, xeerarka udev, iwm.
  • Lagu daray "--cursor-file="ikhtiyaarka"journalctl" si loo qeexo faylka si loo raro loona badbaadiyo booska cursor;
  • Qeexitaan lagu daray ACRN hypervisor iyo WSL subsystem (Windows Subsystem for Linux) si systemd-detect-virt ee laanta soo socota iyadoo la adeegsanayo hawlwadeen shuruudaysan "ConditionVirtualization";
  • Joojiyey abuurista isku xidhka astaanta gudaha /etc to systemd-networkd.service,systemd-networkd.socket,systemd-networkd.socket,
    systemd-resolved.adeegga, remote-cryptsetup.target, remote-fs.target,
    systemd-networkd-wait-online.adeegga iyo systemd-timesyncd.adeeg. Si aad u abuurto faylashaas, waxaad hadda u baahan tahay inaad socodsiiso amarka "systemctl preset-all".

Xigashoopennet.ru

[: en]

Laba bilood oo horumar ah ka dib soo bandhigay siidaynta maamulaha nidaamka systemd 242. Astaamaha cusub waxaa ka mid ah taageerada tunnel-ka L2TP, awoodda lagu xakameynayo habdhaqanka systemd-logind ee dib u bilaabista iyada oo loo marayo doorsoomayaasha deegaanka, taageerada qaybaha kabaha XBOOTLDR ee la dheereeyey ee kor u qaadista / kabaha, awoodda lagu dhejiyo qaybta xididka ee dulsaaryada, iyo tiro badan goobaha cusub ee noocyada kala duwan ee cutubyada.

Isbeddellada ugu waaweyn:

  • systemd-networkd waxa ay taageertaa tunnelyada L2TP;
  • sd-boot iyo bootctl waxay taageeraan XBOOTLDR (Extended Boot Loader) qaybo ku rakiban /boot, marka lagu daro qaybaha ESP ee ku rakiban /efi ama /boot/efi. Kernels, settings, initrd iyo sawirada EFI hadda waxa laga soo rari karaa labada qaybood ee ESP iyo XBOOTLDR. Isbeddelkani waxa uu u oggolaanayaa isticmaalka bootloader-ka sd-boot ee xaalado badan oo muxaafid ah, marka bootloader laftiisa la dhigo ESP, iyo kernels bootable iyo xogta la xidhiidha waxaa loo raray qayb gaar ah;
  • Waxaa lagu daray awoodda lagu bootin karo "systemd.volatile=overlay" ikhtiyaarka loo gudbiyay kernel-ka, kaas oo kuu ogolaanaya inaad dhigato qaybta xididka ee dusha sare oo aad ku habayso shaqada korka sawirka akhriska-kaliya ee tusaha xididka oo leh isbeddelo ku qoran tusaha kala duwan ee tmpfs (isbeddellada qaabayntan ayaa lumaya ka dib dib u bilaabashada) . Marka la barbardhigo, "--volatile=overlay" doorashada ayaa lagu daray systemd-nspawn si loogu isticmaalo shaqada la midka ah ee weelasha;
  • Waxaa lagu daray "-oci-bundle" ikhtiyaarka nidaamkad-nspawn si loogu oggolaado isticmaalka xirmooyinka runtime si ay awood ugu yeelato socodsiinta weelasha go'doonsan ee u hoggaansamaya qeexida Initiative Container (OCI). Taageerada xulashooyinka kala duwan ee lagu qeexay qeexitaanka OCI ayaa loo soo jeediyay isticmaalka khadka taliska iyo unugyada nspawn, tusaale ahaan, goobaha "--aan la heli karin" iyo "aan la heli karin" waxaa loo isticmaali karaa in laga saaro qaybo ka mid ah nidaamka faylka, iyo "- Ikhtiyaarada -console" ayaa lagu daray si loo habeeyo durdurrada wax soo saarka caadiga ah iyo "—tuubo";
  • Awood lagu daray in lagu xakameeyo hab-dhaqanka soo gelida hab-dhaqanka iyada oo loo marayo doorsoomayaasha deegaanka: $SYSTEMD_REBOOT_ TO_FIRMWARE_SETUP,
    $SYSTEMD_REBOOT_ TO_BOOT_LOADER_MENU iyo
    $SYSTEMD_REBOOT_TO_BOOT_LOADER_ENTRY. Adigoo isticmaalaya doorsoomayaashan, waxaad ku xidhi kartaa maamulayaashaada habsocodka dib-u-kicinta (/run/systemd/reboot-to-firmware-setup, /run/systemd/reboot-to-boot-loader-menu iyo)
    /run/systemd/reboot-to-boot-loader-entry) ama gabi ahaanba dami (marka loo dhigo been);

  • Waxaa lagu daray "--boot-load-menu="ikhtiyaarada" si loo "systemctl reboot" amarka iyo
    "--boot-loader-entry=", taasoo kuu ogolaanaysa inaad doorato shay gaar ah oo boot menu ah ama qaabka boot ka dib dib-u-kicinta;

  • Waxaa lagu daray amar gooni-gooni ah sanduuqa-cammuudka cusub "RestrictSUIDSGID=" kaas oo adeegsada seccomp si looga hortago abuurista faylal leh calanka SUID/SGID;
  • Xayiraadaha caadiga ah ee la fuliyay "NoNewPrivileges" iyo "RestrictSUIDSGID" ee adeegyada leh jiilka aqoonsiga isticmaalaha firfircoon ("DynamicUser");
  • Habka MACAddressPolicy=goobaha joogtada ah ee faylasha .link waa la bedelay si loo daboosho qalab badan. Wajiyada isku xidhka buundooyinka, tunnels (tun, tap) iyo isku xidhka la isku daray (bond) iskuma aqoonsanayaan marka laga reebo magaca isku xidhka shabakada, sidaas darteed magacan hadda waxa loo isticmaalaa saldhig u ah xidhidhiyaha MAC iyo IPv4. Intaa waxaa dheer, goobta "MACAddressPolicy=random" ayaa lagu daray, kaas oo loo isticmaali karo in lagu xidho cinwaanada MAC iyo IPv4 qalabka si aan kala sooc lahayn;
  • Faylasha unugga ".qalabka" ee lagu sameeyay systemd-fstab-generator hadda kuma jiraan cutubyada ".mount" ee u dhigma sida ku-tiirsanaanta qaybta "Wants=". Si fudud ku xidhida aaladda si toos ah uma soo daabiciso unugga buurta, laakiin cutubyadan oo kale ayaa weli la bilaabi karaa sababo kale dartood, sida qayb ka mid ah local-fs.target ama ku tiirsanaanta cutubyo kale oo ku xidhan local-fs.target;
  • Taageerada waji-xidhka ("*", iwm.) ayaa lagu daray "listworkctl list/status/lldp" amarada si loo shaandheeyo kooxo gaar ah oo shabakadaha isku xidha qayb magacooda ah;
  • Doorsoomiyaha deegaanka $PIDFILE hadda waxa la dejiyay iyadoo la isticmaalayo dariiqa saxda ah ee lagu habeeyey adeegyada 'PIDFile=;
  • Waxaa lagu daray server-yada Cloudflare dadweynaha (1.1.1.1) tirada kaydka DNS server-yada la isticmaalo marka DNS aasaasiga ah aan si cad loo qeexin. Si aad u tirtirto liiska kaydka DNS server-yada, waxaad isticmaali kartaa "-Ddns-servers=" ikhtiyaarka;
  • Marka la helo Kontoroolka Aaladda USB, maamule cusub oo usb-gadget.target ayaa si toos ah loo bilaabayaa (marka nidaamku ku socdo agagaarka USB);
  • Faylasha unugga, "CPUQuotaPeriodSec=" dejintu waa la hirgeliyey, kaas oo go'aaminaya muddada wakhtiga loo eegayo kootada wakhtiga CPU, oo lagu dejiyay "CPUQuota=" settings;
  • Faylasha unugga, "ProtectHostname=" dejinta waa la fuliyay, kaas oo ka mamnuucaya adeegyada beddelka macluumaadka ku saabsan magaca martida loo yahay, xitaa haddii ay haystaan ​​oggolaansho ku habboon;
  • Unug-faylal, "NetworkNamespacePath=" dejintu waa la hirgeliyey, kaas oo kuu ogolaanaya inaad ku xidho goobta magaca adeegyada ama cutubyada godad adigoo qeexaya dariiqa loo maro faylka magaca ee ku jira /proc pseudo-FS;
  • Waxaa lagu daray awoodda lagu baabi'inayo beddelka doorsoomayaasha deegaanka ee hababka la bilaabay iyadoo la adeegsanayo "ExecStart=" dejinta iyadoo lagu darayo ":" ka hor amarka bilowga;
  • Saacadaha (.cutubyada saacada), calamada cusub "OnClockChange=" iyo
    "OnTimezoneChange=", kaas oo aad ku xakameyn karto wicitaanka cutubka markaad beddesho wakhtiga nidaamka ama wakhtiga;

  • Waxaa lagu daray goobo cusub "ConditionMemory=" iyo" ConditionCPUs=" kuwaas oo go'aamiya shuruudaha loogu yeero unugga iyadoo ku xiran xajmiga xusuusta iyo tirada xudunta CPU (tusaale ahaan, adeegga degdegga ah ee kheyraadka waxaa la bilaabi karaa oo keliya haddii qaddarka loo baahan yahay). RAM waa la heli karaa;
  • Unug cusub oo waqti-set.target ah ayaa lagu daray oo aqbala wakhtiga nidaamka deegaanka loo dejiyay, iyada oo aan la isticmaalin dib-u-heshiisiinta server-yada wakhtiga saxda ah ee dibadda iyadoo la adeegsanayo cutubka time-sync.target. Cutubka cusub waxa isticmaali kara adeegyada u baahan saxnaanta saacad maxalli ah oo aan la socon;
  • Waxaa lagu daray "--show-transaction" ikhtiyaarka "systemctl start" iyo amarro la mid ah si loo muujiyo soo koobida dhammaan shaqooyinka lagu daray safka sababtoo ah hawlgalka la codsaday;
  • systemd-networkd waxa ay hirgelisay qeexitaan loogu talagalay dawlad cusub, 'adoonsan', oo loo isticmaalo halkii 'hoosay' ama 'sidee' isku-xidhka shabakadaha kuwaas oo qayb ka ah isku xirka la isku daray ama buundooyinka shabakada. Isku xirka aasaasiga ah, haddii ay dhacdo dhibaatooyin mid ka mid ah isku xirka xarunta, gobolka 'hoos u qaaday-qaade' ayaa lagu daray;
  • Lagu daray "IgnoreCarrierLoss=" ikhtiyaarka ah .unugyada shabakada si loo badbaadiyo goobaha shabakada haddii xiriirku xumaado;
  • Iyada oo loo marayo goobta "RequiredForOnline=" ee cutubyada shabakada, waxaad hadda dejin kartaa xiriirka ugu yar ee la oggol yahay ee loo baahan yahay si loogu wareejiyo interface-ka "online" oo aad kiciso maamulaha systemd-networkd-wait-online;
  • Waxaa lagu daray "- wax" ikhtiyaar si loo habeeyo-networkd-wait-online si loo sugo mid ka mid ah isku xirka shabakadaha la cayimay inay diyaar noqdaan halkii dhammaan, iyo "-operational-state=" doorasho si loo qeexo xaaladda isku xirka taas oo muujinaysa in waa diyaar;
  • Waxaa lagu daray "UseAutonomousPrefix=" iyo"UseOnLinkPrefix=" settings ka .network unugyo loo isticmaali karo in la iska indho-tiro horgalayaasha marka la helayo
    ogeysiis ka yimid router IPv6 (RA, Xayeysiiska Router);

  • Waxaa lagu daray "MulticastFlood=", "NeighborSuppression=" iyo "Learning=" settings in .network units si loo beddelo xuduudaha hawlgalka buundada network, iyo sidoo kale "TripleSampling=" dejinta si loo beddelo habka TRIPLE-SAMPLING ee is-dhexyaalka CAN;
  • Waxaa lagu daray "PrivateKeyFile=" iyo "PresharedKeyFile=" dejinta cutubyada .netdev, kuwaas oo aad ku qeexi karto furayaasha gaarka ah iyo kuwa la wadaago (PSK) ee WireGuard VPN interfaces;
  • Lagu daray isla-cpu-crypt iyo soo gudbin-ka-crypt-cpus fursadaha /etc/crypttab si loo xakameeyo habdhaqanka jadwalaha marka loo guurayo shaqooyinka sirta laxidhiidha ee udhaxeeya xudunta CPU;
  • systemd-tmpfiles waxay bixisaa habaynta faylka qufulka ka hor inta aan la samayn hawlaha tusaha leh faylalka ku meel gaadhka ah, taas oo kuu ogolaanaysa inaad joojiso shaqada nadiifinta faylalka duugoobay inta lagu jiro ficilada qaarkood (tusaale ahaan, marka la furayo kaydka daamurka gudaha / tmp, aad u da' weyn faylasha waa la furi karaa oo aan la tirtiri karin ka hor dhammaadka ficilka iyaga;
  • Amarka "systemd-analyze cat-config" wuxuu bixiyaa awoodda lagu falanqeynayo qaabeynta oo loo kala qaybiyay dhowr faylal, tusaale ahaan, isticmaalayaasha iyo nidaamka horudhaca, waxa ku jira tmpfiles.d iyo sysusers.d, xeerarka udev, iwm.
  • Lagu daray "--cursor-file="ikhtiyaarka"journalctl" si loo qeexo faylka si loo raro loona badbaadiyo booska cursor;
  • Qeexitaan lagu daray ACRN hypervisor iyo WSL subsystem (Windows Subsystem for Linux) si systemd-detect-virt ee laanta soo socota iyadoo la adeegsanayo hawlwadeen shuruudaysan "ConditionVirtualization";
  • Joojiyey abuurista isku xidhka astaanta gudaha /etc to systemd-networkd.service,systemd-networkd.socket,systemd-networkd.socket,
    systemd-resolved.adeegga, remote-cryptsetup.target, remote-fs.target,
    systemd-networkd-wait-online.adeegga iyo systemd-timesyncd.adeeg. Si aad u abuurto faylashaas, waxaad hadda u baahan tahay inaad socodsiiso amarka "systemctl preset-all".

Source: opennet.ru

[:]

Add a comment