+2
-2
nixos/modules/installer/tools/nixos-install.sh
+2
-2
nixos/modules/installer/tools/nixos-install.sh
···+if [ -z "$noRootPasswd" ] && chroot $mountPoint [ -x /run/wrappers/bin/passwd ] && [ -t 0 ]; then
+1
-2
nixos/modules/security/apparmor-suid.nix
+1
-2
nixos/modules/security/apparmor-suid.nix
······
+30
-3
nixos/modules/security/wrappers/default.nix
+30
-3
nixos/modules/security/wrappers/default.nix
···-lcap-ng -lcap ${./wrapper.c} -o $out/bin/${program}.wrapper -L ${pkgs.libcap.lib}/lib -L ${pkgs.libcap_ng}/lib \······
+2
-2
nixos/modules/services/logging/logcheck.nix
+2
-2
nixos/modules/services/logging/logcheck.nix
···-@reboot logcheck env PATH=/run/wrappers:$PATH nice -n10 ${pkgs.logcheck}/sbin/logcheck -R ${flags}-2 ${cfg.timeOfDay} * * * logcheck env PATH=/run/wrappers:$PATH nice -n10 ${pkgs.logcheck}/sbin/logcheck ${flags}+@reboot logcheck env PATH=/run/wrappers/bin:$PATH nice -n10 ${pkgs.logcheck}/sbin/logcheck -R ${flags}+2 ${cfg.timeOfDay} * * * logcheck env PATH=/run/wrappers/bin:$PATH nice -n10 ${pkgs.logcheck}/sbin/logcheck ${flags}
+1
-1
nixos/modules/services/mail/dovecot.nix
+1
-1
nixos/modules/services/mail/dovecot.nix
+1
-1
nixos/modules/services/mail/exim.nix
+1
-1
nixos/modules/services/mail/exim.nix
+2
-2
nixos/modules/services/monitoring/munin.nix
+2
-2
nixos/modules/services/monitoring/munin.nix
······-PATH="/run/wrappers:/run/current-system/sw/bin:/run/current-system/sw/bin" ${pkgs.munin}/sbin/munin-node-configure --shell --families contrib,auto,manual --config ${nodeConf} --libdir=${muninPlugins} --servicedir=/etc/munin/plugins 2>/dev/null | ${pkgs.bash}/bin/bash+PATH="/run/wrappers/bin:/run/current-system/sw/bin:/run/current-system/sw/bin" ${pkgs.munin}/sbin/munin-node-configure --shell --families contrib,auto,manual --config ${nodeConf} --libdir=${muninPlugins} --servicedir=/etc/munin/plugins 2>/dev/null | ${pkgs.bash}/bin/bash
+1
-1
nixos/modules/services/monitoring/smartd.nix
+1
-1
nixos/modules/services/monitoring/smartd.nix
+1
-1
nixos/modules/services/network-filesystems/samba.nix
+1
-1
nixos/modules/services/network-filesystems/samba.nix
+1
-1
nixos/modules/services/networking/prayer.nix
+1
-1
nixos/modules/services/networking/prayer.nix
+1
-1
nixos/modules/services/networking/smokeping.nix
+1
-1
nixos/modules/services/networking/smokeping.nix
···
+2
-2
nixos/modules/services/scheduling/atd.nix
+2
-2
nixos/modules/services/scheduling/atd.nix
···
+1
-1
nixos/modules/services/scheduling/cron.nix
+1
-1
nixos/modules/services/scheduling/cron.nix
+1
-1
nixos/modules/services/scheduling/fcron.nix
+1
-1
nixos/modules/services/scheduling/fcron.nix
-5
nixos/modules/system/boot/stage-2-init.sh
-5
nixos/modules/system/boot/stage-2-init.sh
···
+2
-2
nixos/modules/virtualisation/virtualbox-host.nix
+2
-2
nixos/modules/virtualisation/virtualbox-host.nix
···
+1
-1
nixos/tests/smokeping.nix
+1
-1
nixos/tests/smokeping.nix
+1
-1
pkgs/applications/editors/sublime3/default.nix
+1
-1
pkgs/applications/editors/sublime3/default.nix
···
+2
-2
pkgs/applications/networking/browsers/chromium/default.nix
+2
-2
pkgs/applications/networking/browsers/chromium/default.nix
···
+1
-1
pkgs/applications/networking/instant-messengers/gale/gale-install.in.patch
+1
-1
pkgs/applications/networking/instant-messengers/gale/gale-install.in.patch
+1
-1
pkgs/applications/version-management/gitlab/remove-hardcoded-locations.patch
+1
-1
pkgs/applications/version-management/gitlab/remove-hardcoded-locations.patch
+3
-3
pkgs/applications/virtualization/virtualbox/hardened.patch
+3
-3
pkgs/applications/virtualization/virtualbox/hardened.patch
·········
+1
-1
pkgs/build-support/build-fhs-userenv/env.nix
+1
-1
pkgs/build-support/build-fhs-userenv/env.nix
···
+3
-3
pkgs/desktops/enlightenment/enlightenment.nix
+3
-3
pkgs/desktops/enlightenment/enlightenment.nix
···-# 4. and finally, links /run/wrappers/e_freqset to original destination where enlightenment wants it+# 4. and finally, links /run/wrappers/bin/e_freqset to original destination where enlightenment wants it
+1
-1
pkgs/development/libraries/kde-frameworks/kinit/start_kdeinit-path.patch
+1
-1
pkgs/development/libraries/kde-frameworks/kinit/start_kdeinit-path.patch
+2
-2
pkgs/development/libraries/libgksu/default.nix
+2
-2
pkgs/development/libraries/libgksu/default.nix
···
+1
-1
pkgs/development/libraries/polkit/default.nix
+1
-1
pkgs/development/libraries/polkit/default.nix
+1
-1
pkgs/development/tools/unity3d/default.nix
+1
-1
pkgs/development/tools/unity3d/default.nix
···
+1
-1
pkgs/os-specific/linux/fuse/default.nix
+1
-1
pkgs/os-specific/linux/fuse/default.nix
···
+1
-1
pkgs/os-specific/linux/mdadm/4.nix
+1
-1
pkgs/os-specific/linux/mdadm/4.nix
+1
-1
pkgs/os-specific/linux/mdadm/default.nix
+1
-1
pkgs/os-specific/linux/mdadm/default.nix
+1
-1
pkgs/os-specific/linux/pam/default.nix
+1
-1
pkgs/os-specific/linux/pam/default.nix
+1
-1
pkgs/os-specific/linux/util-linux/default.nix
+1
-1
pkgs/os-specific/linux/util-linux/default.nix
···
+1
-1
pkgs/servers/interlock/default.nix
+1
-1
pkgs/servers/interlock/default.nix
···
+1
-1
pkgs/servers/mail/petidomo/default.nix
+1
-1
pkgs/servers/mail/petidomo/default.nix
+2
-2
pkgs/servers/monitoring/nagios/plugins/official-2.x.nix
+2
-2
pkgs/servers/monitoring/nagios/plugins/official-2.x.nix
···
+2
-2
pkgs/tools/X11/x11vnc/default.nix
+2
-2
pkgs/tools/X11/x11vnc/default.nix
···-sed -i -e '/#!\/bin\/sh/a"PATH=${xorg.xdpyinfo}\/bin:${xorg.xauth}\/bin:$PATH\\n"' -e 's|/bin/su|/run/wrappers/su|g' x11vnc/ssltools.h+sed -i -e '/#!\/bin\/sh/a"PATH=${xorg.xdpyinfo}\/bin:${xorg.xauth}\/bin:$PATH\\n"' -e 's|/bin/su|/run/wrappers/bin/su|g' x11vnc/ssltools.h
+1
-1
pkgs/tools/admin/certbot/default.nix
+1
-1
pkgs/tools/admin/certbot/default.nix
···+substituteInPlace certbot/notify.py --replace "/usr/sbin/sendmail" "/run/wrappers/bin/sendmail"
+1
-1
pkgs/tools/misc/debian-devscripts/default.nix
+1
-1
pkgs/tools/misc/debian-devscripts/default.nix
+1
-1
pkgs/tools/security/ecryptfs/default.nix
+1
-1
pkgs/tools/security/ecryptfs/default.nix
+1
-1
pkgs/tools/security/ecryptfs/helper.nix
+1
-1
pkgs/tools/security/ecryptfs/helper.nix
···-# Do not hardcode PATH to ${ecryptfs} as we need the script to invoke executables from /run/wrappers+# Do not hardcode PATH to ${ecryptfs} as we need the script to invoke executables from /run/wrappers/bin
+1
-1
pkgs/tools/security/sudo/default.nix
+1
-1
pkgs/tools/security/sudo/default.nix
+1
-1
pkgs/tools/system/at/default.nix
+1
-1
pkgs/tools/system/at/default.nix
+1
-1
pkgs/tools/system/cron/default.nix
+1
-1
pkgs/tools/system/cron/default.nix
···-#define _PATH_DEFPATH "/run/wrappers:/nix/var/nix/profiles/default/bin:/nix/var/nix/profiles/default/sbin:/run/current-system/sw/bin:/run/current-system/sw/sbin:/usr/bin:/bin"+#define _PATH_DEFPATH "/run/wrappers/bin:/nix/var/nix/profiles/default/bin:/nix/var/nix/profiles/default/sbin:/run/current-system/sw/bin:/run/current-system/sw/sbin:/usr/bin:/bin"