network-interfaces: restrict ipv6 udev rules #240295
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Description of changes
The network-interfaces module generates udev rules to set IPv6 privacy address configuration on interfaces which have
networking.interfaces.<iface>.tempAddress
set to a value other than the global default innetworking.tempAddresses
. The generated udev rule for an interfaceethfoo
looks like e.g.:However, this rule is missing a
NAME==
constraint to restrict it to a matching an interface with a specific name, which means that it will get triggered for every new network interface added to the system, not onlyethfoo
. This will result in the sysctl command being run once for every network interface attached to the system.This change adds an extra constraint to the generated udev rule, so that it is only triggered once by the interface to which it applies the sysctl configuration.
Things done
sandbox = true
set innix.conf
? (See Nix manual)nix-shell -p nixpkgs-review --run "nixpkgs-review rev HEAD"
. Note: all changes have to be committed, also see nixpkgs-review usage./result/bin/
)