[06:25] good morning! [06:30] hey mvo [06:30] long time no see [06:34] PR snapd#10606 opened: o/hookstate/ctlcmd: unify the error message when context is missing [06:39] good morning zyga - indeed! [06:56] hi zyga, mvo! [06:56] hey mardy [06:58] hey mardy - good morning! [06:59] PR snapd#10604 closed: wrappers: measure time to enable services in StartServices() [11:35] PR snapd#10607 opened: o/snapstate: install snap after prereq snaps are done installing [13:37] ijohnson[m]: about that /run/mount/utab* file, I'm a bit hesitant to add a `deny` for it, given what's written here: https://gitlab.com/apparmor/apparmor/-/wikis/AppArmor_Core_Policy_Reference#subtracting-permissions [13:38] ijohnson[m]: there are other interfaces (such as the udisks2 one) which explicitly allow access to this file, so denying it would make it harder to use these two interfaces at the same time [13:41] mardy: hmm let me take a look now that I'm back at my computer, I seem to remember deny's for it elsewhere but perhaps I'm mistaken [13:43] mardy: ah so I think I remember, we deny it for the kubernetes-support interface, but I think that's probably something specific to kubernetes-support, as we are in "more control" over the users of kubernetes-support and what other plugs they use alongside kubernetes-support [13:43] mardy: so given this I think it's fine to just allow /run/mount/utab for the mount-control interface [13:55] ijohnson[m]: ok [15:41] PR snapd#9094 closed: corecfg: add "system.hostname" setting to the system settings <:birthday:> [15:42] mvo: I've got a branch for the install-device files thing we discussed today, I'm working on a spread test for it now, shouldn't be too bad but requires even more hackiness to nested.sh [15:48] ijohnson[m]: \o/ [15:49] ijohnson[m]: I did not manage to work on the KDF parameters for the recovery key from the gadget.yaml :( but I will try again tomorrow [15:49] ijohnson[m]: it's also not really designed yet so … anyway, gtg [19:56] PR snapd#10593 closed: c/snap,o/hookstate/ctlcmd: add JSON/string strict processing flags to snap/snapctl [23:24] hey amurray, can i /msg you? [23:26] bandali: sure [23:27] thanks!