mirror of
https://github.com/clearlinux/graphene.git
synced 2026-10-04 16:08:22 +00:00
As part of argv protection, Graphene now requires an explicit manifest option to pass command-line arguments, either "loader.argv_src_file" or "loader.insecure__use_cmdline_argv". As part of that change, most manifests were updated to include these options, but not all. This commit fixes this for the rest of manifests.
26 lines
738 B
Plaintext
26 lines
738 B
Plaintext
loader.preload = file:$(SHIMPATH)
|
|
loader.env.LD_LIBRARY_PATH = /lib
|
|
loader.debug_type = inline
|
|
loader.syscall_symbol = syscalldb
|
|
loader.insecure__use_cmdline_argv = 1
|
|
|
|
fs.mount.lib.type = chroot
|
|
fs.mount.lib.path = /lib
|
|
fs.mount.lib.uri = file:$(LIBCDIR)
|
|
|
|
fs.mount.bin.type = chroot
|
|
fs.mount.bin.path = /bin
|
|
fs.mount.bin.uri = file:/bin
|
|
|
|
sys.brk.max_size = 32M
|
|
sys.stack.size = 4M
|
|
|
|
sgx.trusted_files.ld = file:$(LIBCDIR)/ld-linux-x86-64.so.2
|
|
sgx.trusted_files.libc = file:$(LIBCDIR)/libc.so.6
|
|
sgx.trusted_files.libdl = file:$(LIBCDIR)/libdl.so.2
|
|
sgx.trusted_files.libm = file:$(LIBCDIR)/libm.so.6
|
|
sgx.trusted_files.libpthread = file:$(LIBCDIR)/libpthread.so.0
|
|
|
|
sgx.trusted_files.fork = file:fork
|
|
sgx.trusted_children.fork = file:fork.sig
|