Add FEATURES=ipc-sandbox to isolate IPC from host.
authorMichał Górny <mgorny@gentoo.org>
Sun, 18 Aug 2013 23:22:59 +0000 (01:22 +0200)
committerZac Medico <zmedico@gentoo.org>
Sun, 18 Aug 2013 23:31:01 +0000 (16:31 -0700)
commitf0711200ce35920552962190c9a1f7b98d107070
treef7a5228f64b4fb9a4a15d61aac1f64f51b01367d
parentddd1bc384629571d52d5c5f59a5446debaeae01a
Add FEATURES=ipc-sandbox to isolate IPC from host.

This way, only privileged phases (pkg_*) can use *nix IPC to communicate
with host applications. src_* use private IPC namespace.
man/make.conf.5
pym/portage/const.py
pym/portage/package/ebuild/doebuild.py
pym/portage/process.py