Commit Graph

  • 44183dc080 Allow sub-containers to cold-start on restored Pods. master Ayush Ranjan 2026-04-03 00:34:56 -07:00
  • c2b4fe5e86 vfs: Remove FICLONE/FICLONERANGE/FIDEDUPERANGE test cases test/cl893842986 yiftan 2026-04-02 20:14:21 -07:00
  • 3ebd859bb3 proc: Add /proc/sys/kernel/randomize_va_space test/cl893842262 yiftan 2026-04-02 20:12:46 -07:00
  • 65d572d913 Add initial AI tool use policy for gVisor. test/cl889726678 Jing Chen 2026-03-26 03:12:17 -07:00
  • 679131d2de Merge release-20260330.0-4-g4750c79b8 (automated) go gVisor bot 2026-04-03 00:50:16 +00:00
  • 4750c79b81 runsc: accept nvidia-cdi-hook Jamie Liu 2026-04-02 17:35:00 -07:00
  • b03a9f59f6 Merge pull request #12853 from tanyifeng:vfs-ficlone-eopnotsupp gVisor bot 2026-04-02 17:29:31 -07:00
  • 7028e4cd07 kvm: re-enable the TestMemLimit test/cl893647615 Parth Sarthi 2026-04-02 12:43:27 -07:00
  • d1ab4fa9f3 gVisor security policy: Clarifications and update for InternalEsc. Etienne Perot 2026-04-02 14:34:15 -07:00
  • d40fa73b90 Adds missing Vulkan ioctls for RTX PRO 6000 test/cl893704507 Luis Capelo 2026-04-02 14:30:02 -07:00
  • acd922746c proc: Add pos and mnt_id fields to /proc/[pid]/fdinfo/[fd] test/cl893667695 yiftan 2026-04-02 13:24:11 -07:00
  • 9447b9ff59 sysfs: Add block and char subdirectories under /sys/dev test/cl893658362 yiftan 2026-04-02 13:06:07 -07:00
  • 9e36bc132e Implement shim manager. test/cl893211251 Jing Chen 2026-04-01 18:29:19 -07:00
  • da62273136 run mem limit on kvm test/cl893601370 Parth Sarthi 2026-04-02 11:11:30 -07:00
  • 7435a6c058 vfs: return EOPNOTSUPP for FICLONE/FICLONERANGE/FIDEDUPERANGE Tan Yifeng 2026-04-02 17:09:30 +08:00
  • 4eeb780498 mm: only hugepage-align mappings of hugepage-aligned length release-20260330.0 Jamie Liu 2026-04-01 21:20:11 -07:00
  • 0cb662ebc4 Kill rogue BuildKite agents. test/cl893257553 Ayush Ranjan 2026-04-01 20:50:25 -07:00
  • 28a0852fcb Merge pull request #12634 from pawannn:master gVisor bot 2026-04-01 18:20:26 -07:00
  • 638c1efe19 Read runsc.Options from the state file to clean up task service. Jing Chen 2026-04-01 14:51:29 -07:00
  • bd14d77aaa Merge release-20260323.0-47-g6ae8fe92d (automated) gVisor bot 2026-04-01 21:05:15 +00:00
  • 6ae8fe92db Add support for STATX_MNT_ID in statx. Lucas Manning 2026-04-01 13:50:07 -07:00
  • dd3bc42c2c shim refactoring: move more container related operations out of task service. Jing Chen 2026-04-01 13:27:06 -07:00
  • f16d235481 Refactor lisafs to use its own version of statx. Lucas Manning 2026-04-01 11:15:02 -07:00
  • 0063e3eb8e Update title of rootless containers guide. Ayush Ranjan 2026-04-01 10:44:18 -07:00
  • 57163f8ce8 Internal change. test/cl891964787 gVisor bot 2026-03-30 16:13:51 -07:00
  • 3058187986 sentry: use cryptographic PRNG for security-sensitive randomization Kevin Zhao 2026-04-01 00:13:40 -07:00
  • 479e1cc2c3 Merge release-20260323.0-42-g63273368f (automated) gVisor bot 2026-04-01 05:34:14 +00:00
  • 63273368f1 Add gVisor rootless user guide. Ayush Ranjan 2026-03-31 22:19:06 -07:00
  • 8b1f27243d fix: set next-hop MTU in ICMPv4 Fragmentation Needed message pawannn 2026-02-22 23:38:51 +05:30
  • db0a09ee21 Add Kata runtime type to testcluster. Etienne Perot 2026-03-31 19:03:18 -07:00
  • 5d857245b6 vfs: clear temporary notReady lists Jamie Liu 2026-03-31 17:17:09 -07:00
  • a65eb6a5a1 Merge pull request #12771 from tanyifeng:tmpfs-otrunc-mtime gVisor bot 2026-03-31 17:11:51 -07:00
  • 1292e70c5b Merge release-20260323.0-37-g82275ab10 (automated) gVisor bot 2026-03-31 23:38:46 +00:00
  • 82275ab10d runsc: support unprivileged user namespace mappings using SysProcAttr Ayush Ranjan 2026-03-31 16:23:49 -07:00
  • 57c90cff86 Internal change. test/cl892444543 Etienne Perot 2026-03-31 11:13:51 -07:00
  • eef071cf55 Internal change. test/cl892444544 Etienne Perot 2026-03-31 11:13:51 -07:00
  • 5c7fd96116 build(deps): bump actions/setup-go from 6.0.0 to 6.4.0 dependabot/github_actions/actions/setup-go-6.4.0 dependabot[bot] 2026-03-31 20:33:39 +00:00
  • d8c35efb4b Merge pull request #12688 from a7i:fix/raw-table-ct-target gVisor bot 2026-03-31 12:32:03 -07:00
  • ab6ae399f1 Deflake TestMemLimit. Ayush Ranjan 2026-03-31 12:19:32 -07:00
  • 77f16241f5 Merge pull request #12775 from ildar-safarov:arm64-pagesize-warning gVisor bot 2026-03-31 12:21:42 -07:00
  • 79a29f4f17 Add systemd image for testing. Lucas Manning 2026-03-31 12:15:05 -07:00
  • 527ed07dee Merge release-20260323.0-30-g6ea88f0a8 (automated) gVisor bot 2026-03-31 19:11:57 +00:00
  • 6ea88f0a80 Merge pull request #12820 from pewz:seccomp-notify-fix gVisor bot 2026-03-31 11:58:53 -07:00
  • 7c0fde891e feat(netfilter): add raw table and no-op CT target Amir Alavi 2026-03-07 23:14:19 -05:00
  • 8d3d8250e8 Fix: Next-Hop MTU in ICMPv4 "Fragmentation Needed" Packets test/cl892405056 Pawan Kalyan 2026-03-31 10:04:06 -07:00
  • a0b44232c2 Merge release-20260323.0-28-g3479ded64 (automated) gVisor bot 2026-03-31 05:29:10 +00:00
  • 3479ded64d runsc: Fix SetUserMappings to handle empty UID/GID mappings in spec. Ayush Ranjan 2026-03-30 22:14:11 -07:00
  • 313aee6e95 Exclude test-dns-any.js from Node.js 22.2.0 tests. Ayush Ranjan 2026-03-30 21:27:12 -07:00
  • dc29295285 nftables: Fix evaluation order for IP/IP6/Inet. Parth Sarthi 2026-03-30 15:44:44 -07:00
  • 957342a5fb Deflake TestRootfsEROFS. Ayush Ranjan 2026-03-30 13:58:52 -07:00
  • 22ad7ba254 tmpfs: Update mtime/ctime on open(O_TRUNC) for zero-length files test/cl890945858 yiftan 2026-03-28 08:08:13 -07:00
  • 101d811651 nftables: Fixed bugs. Parth Sarthi 2026-03-30 13:43:27 -07:00
  • 1940c77b91 Internal Code Change test/cl889816903 gVisor bot 2026-03-26 07:01:35 -07:00
  • fc99b58cb4 get logs test/cl891864204 Parth Sarthi 2026-03-30 12:56:27 -07:00
  • 95e20f2578 check buildkite-container test/cl891380231 Parth Sarthi 2026-03-29 14:03:54 -07:00
  • 77458736f4 Nftables: Remove the overheads from register ops. Parth Sarthi 2026-03-30 10:39:13 -07:00
  • d23cf24593 utimensat: Allow AT_EMPTY_PATH Shailend Chand 2026-03-27 14:12:31 -07:00
  • 7491461318 Fix systemcall tests AnilAltinay 2026-03-27 11:20:41 -07:00
  • 4a8eae08bc systrap: retry seccomp notify send after freezer interruption pewz 2026-03-27 11:55:43 +01:00
  • ee0009dec4 check buildkite test/cl890257689 Parth Sarthi 2026-03-26 23:28:06 -07:00
  • d2403f2370 Extend containerd runsc shim testing. Jing Chen 2026-03-26 14:46:25 -07:00
  • a27a127261 nft_metaload/set: Added dump implementation. Parth Sarthi 2026-03-26 13:31:48 -07:00
  • c9de230e57 test cl test/cl889552241 Jing Chen 2026-03-25 19:16:54 -07:00
  • d5da431bbd tmpfs: Unconditionally update mtime/ctime on truncate Tan Yifeng 2026-03-26 15:08:38 +08:00
  • c85244f0aa netstack: Fix cap check around IFLA_NET_NS_FD Shailend Chand 2026-03-25 17:33:46 -07:00
  • c6b032bce3 Update links to GKE Sandbox documentation page. test/cl889513137 Etienne Perot 2026-03-25 17:20:07 -07:00
  • eddece6e7d Debug CL, DO NOT SUBMIT test/cl881545961 Jamie Liu 2026-03-10 11:43:22 -07:00
  • 7644cf3a34 Merge release-20260316.0-28-ge2588d730 (automated) gVisor bot 2026-03-25 20:28:30 +00:00
  • e2588d7309 Merge pull request #12692 from dany74q:exec-seccomp-filters gVisor bot 2026-03-25 13:14:44 -07:00
  • e99e98c872 Merge pull request #12786 from tanyifeng:devpts-isig-check gVisor bot 2026-03-25 11:55:50 -07:00
  • 147cf2057d Internal change. Ayush Ranjan 2026-03-25 10:55:14 -07:00
  • 0a1922cbf0 devpts: Check ISIG flag before generating signals for VINTR/VSUSP/VQUIT Tan Yifeng 2026-03-25 17:55:46 +08:00
  • 9b9db9a150 CR Danny Hershko Shemesh 2026-03-10 02:12:35 +02:00
  • 028b7f0f1b Apply OCI seccomp filters to exec processes Danny Hershko Shemesh 2026-03-08 16:57:46 +02:00
  • c84e2b3c91 Add new extension method to support shim grouping. Nayana Bidari 2026-03-24 10:09:00 -07:00
  • 556b899cbc Merge release-20260316.0-21-g5b3748438 (automated) gVisor bot 2026-03-24 16:20:01 +00:00
  • 5b37484387 Fix formatting verb for sandbox ID %d -> %q gVisor bot 2026-03-24 09:02:59 -07:00
  • b7386e3130 runsc/sandbox: Collect loopback routes in loopbackLink Povilas Kanapickas 2026-03-24 08:34:39 -07:00
  • e3ad8449fa Internal change. test/cl888170021 gVisor bot 2026-03-23 10:39:06 -07:00
  • 7fa0acf9f2 Merge pull request #12772 from tanyifeng:fix-path-resolve gVisor bot 2026-03-24 00:12:10 -07:00
  • 2dafafaf90 Fix triton image build. Ayush Ranjan 2026-03-23 23:30:43 -07:00
  • 492428aca8 Merge pull request #12605 from gurusai-voleti:ai-gsutil-migration-d69a7cf6a93f461eab56acecb11a0870 gVisor bot 2026-03-23 16:52:59 -07:00
  • 3a5311091c Merge pull request #12734 from luiscape:master gVisor bot 2026-03-23 10:55:18 -07:00
  • bf87740ede Replace panic with warning on arm64 page size mismatch Ildar Safarov 2026-03-23 14:03:49 +00:00
  • 748f668e58 Merge branch 'google:master' into master Luis Capelo 2026-03-23 00:19:55 -04:00
  • 8072a12b01 fsimpl/user: align PATH resolve error handling with glibc execvpe Tan Yifeng 2026-03-23 11:34:52 +08:00
  • ae1fda41cd Merge release-20260316.0-11-g5632a4feb (automated) gVisor bot 2026-03-21 18:31:40 +00:00
  • 5632a4febd Merge pull request #12633 from danielnorberg:fix-tar-rootfs-upper-opaque-xattr release-20260323.0 gVisor bot 2026-03-21 11:18:08 -07:00
  • afa183ad4a Add runsc wait --fscheckpoint/fsrestore. Jamie Liu 2026-03-20 14:42:02 -07:00
  • 5c36db989a Implement pidfds test/cl885192880 Shailend Chand 2026-03-17 13:51:08 -07:00
  • 0ee4bfc55d Merge pull request #12758 from Bingtagui404:fix/proc-pid-io-rchar-typo gVisor bot 2026-03-19 19:22:58 -07:00
  • d76d4bd4c1 procfs: Call kernfs.DynamicBytesFile.Init() on /proc/gvisor/kernel_is_gvisor. Ayush Ranjan 2026-03-19 17:38:34 -07:00
  • bf19fbd375 runsc/shim: Add support for filesystem restore. Ayush Ranjan 2026-03-19 16:30:28 -07:00
  • f6a4e7c41c Fix /proc/[pid]/io rchar field name typo Baixiaochun 2026-03-19 10:50:51 +08:00
  • 6c1de06e82 build(deps): bump the npm_and_yarn group across 1 directory with 8 updates dependabot/npm_and_yarn/images/benchmarks/node/npm_and_yarn-6a5de02aae dependabot[bot] 2026-03-19 02:48:06 +00:00
  • 9ca1678bc6 Implement filesystem-only checkpointing. Jamie Liu 2026-03-18 19:42:27 -07:00
  • 2b089051af build(deps): bump the go_modules group across 1 directory with 2 updates dependabot/go_modules/go_modules-9c7899a44c dependabot[bot] 2026-03-19 02:12:40 +00:00
  • ac8ff8fd1a Fix more printf findings Michael Pratt 2026-03-18 14:55:27 -07:00
  • 819d058fd6 Remove unsupported %w Michael Pratt 2026-03-18 13:54:02 -07:00
  • 15f3bdc57d nogo: plumb SDK version as language version release-20260316.0 Michael Pratt 2026-03-18 09:18:56 -07:00