utils

package
v1.0.2 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Aug 20, 2021 License: Apache-2.0 Imports: 11 Imported by: 721

Documentation

Index

Constants

View Source
const MaxNameLen = 4096

MaxSendfdLen is the maximum length of the name of a file descriptor being sent using SendFd. The name of the file handle returned by RecvFd will never be larger than this value.

Variables

View Source
var NativeEndian binary.ByteOrder

NativeEndian is the native byte order of the host system.

Functions

func Annotations added in v1.0.0

func Annotations(labels []string) (bundle string, userAnnotations map[string]string)

Annotations returns the bundle path and user defined annotations from the libcontainer state. We need to remove the bundle because that is a label added by libcontainer.

func CleanPath added in v0.0.8

func CleanPath(path string) string

CleanPath makes a path safe for use with filepath.Join. This is done by not only cleaning the path, but also (if the path is relative) adding a leading '/' and cleaning it (then removing the leading '/'). This ensures that a path resulting from prepending another path will always resolve to lexically be a subdirectory of the prefixed path. This is all done lexically, so paths that include symlinks won't be safe as a result of using CleanPath.

func CloseExecFrom

func CloseExecFrom(minFd int) error

CloseExecFrom applies O_CLOEXEC to all file descriptors currently open for the process (except for those below the given fd value).

func EnsureProcHandle added in v1.0.0

func EnsureProcHandle(fh *os.File) error

EnsureProcHandle returns whether or not the given file handle is on procfs.

func ExitStatus

func ExitStatus(status unix.WaitStatus) int

ExitStatus returns the correct exit status for a process based on if it was signaled or exited cleanly

func NewSockPair added in v1.0.0

func NewSockPair(name string) (parent *os.File, child *os.File, err error)

NewSockPair returns a new unix socket pair

func RecvFd added in v1.0.0

func RecvFd(socket *os.File) (*os.File, error)

RecvFd waits for a file descriptor to be sent over the given AF_UNIX socket. The file name of the remote file descriptor will be recreated locally (it is sent as non-auxiliary data in the same payload).

func ResolveRootfs

func ResolveRootfs(uncleanRootfs string) (string, error)

ResolveRootfs ensures that the current working directory is not a symlink and returns the absolute path to the rootfs

func SearchLabels added in v0.1.0

func SearchLabels(labels []string, query string) string

SearchLabels searches a list of key-value pairs for the provided key and returns the corresponding value. The pairs must be separated with '='.

func SendFd added in v1.0.0

func SendFd(socket *os.File, name string, fd uintptr) error

SendFd sends a file descriptor over the given AF_UNIX socket. In addition, the file.Name() of the given file will also be sent as non-auxiliary data in the same payload (allowing to send contextual information for a file descriptor).

func WithProcfd added in v1.0.0

func WithProcfd(root, unsafePath string, fn func(procfd string) error) error

WithProcfd runs the passed closure with a procfd path (/proc/self/fd/...) corresponding to the unsafePath resolved within the root. Before passing the fd, this path is verified to have been inside the root -- so operating on it through the passed fdpath should be safe. Do not access this path through the original path strings, and do not attempt to use the pathname outside of the passed closure (the file handle will be freed once the closure returns).

func WriteJSON added in v0.0.7

func WriteJSON(w io.Writer, v interface{}) error

WriteJSON writes the provided struct v to w using standard json marshaling

Types

This section is empty.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL