晋太元中,武陵人捕鱼为业。缘溪行,忘路之远近。忽逢桃花林,夹岸数百步,中无杂树,芳草鲜美,落英缤纷。渔人甚异之,复前行,欲穷其林。 林尽水源,便得一山,山有小口,仿佛若有光。便舍船,从口入。初极狭,才通人。复行数十步,豁然开朗。土地平旷,屋舍俨然,有良田、美池、桑竹之属。阡陌交通,鸡犬相闻。其中往来种作,男女衣着,悉如外人。黄发垂髫,并怡然自乐。 见渔人,乃大惊,问所从来。具答之。便要还家,设酒杀鸡作食。村中闻有此人,咸来问讯。自云先世避秦时乱,率妻子邑人来此绝境,不复出焉,遂与外人间隔。问今是何世,乃不知有汉,无论魏晋。此人一一为具言所闻,皆叹惋。余人各复延至其家,皆出酒食。停数日,辞去。此中人语云:“不足为外人道也。”(间隔 一作:隔绝) 既出,得其船,便扶向路,处处志之。及郡下,诣太守,说如此。太守即遣人随其往,寻向所志,遂迷,不复得路。 南阳刘子骥,高尚士也,闻之,欣然规往。未果,寻病终。后遂无问津者。
| DIR:/opt/cloudlinux/venv/lib64/python3.11/site-packages/clcagefslib/webisolation/ |
| Current File : //opt/cloudlinux/venv/lib64/python3.11/site-packages/clcagefslib/webisolation/jail_config.py |
# -*- coding: utf-8 -*-
#
# Copyright © Cloud Linux GmbH & Cloud Linux Software, Inc 2010-2021 All Rights Reserved
#
# Licensed under CLOUD LINUX LICENSE AGREEMENT
# http://cloudlinux.com/docs/LICENCE.TXT
#
import typing
from dataclasses import dataclass, field
if typing.TYPE_CHECKING:
from .mount_config import IsolatedRootConfig
from .mount_types import MountEntry, MountType
@dataclass
class MountConfig:
"""
Builds mount configuration for jail.c implementation.
Accumulates MountEntry objects, then renders everything at the end.
"""
uid: int
gid: int
_mounts: list[MountEntry] = field(default_factory=list, repr=False)
@property
def _default_opts(self) -> tuple[str, ...]:
return f"uid={self.uid}", f"gid={self.gid}", "mode=0750"
@property
def mounts(self) -> tuple[MountEntry, ...]:
"""Read-only access to accumulated mount entries."""
return tuple(self._mounts)
def add(self, type_: MountType, source: str, target: str = "", options: tuple[str] = tuple()):
"""Add a single mount entry."""
self._mounts.append(
MountEntry(
type=type_,
source=source,
target=target,
options=options,
)
)
def comment(self, text: str):
"""Add a comment line for organization."""
self._mounts.append(MountEntry(MountType.COMMENT, text))
def add_overlay(self, overlay: "IsolatedRootConfig"):
"""
Add mount operations for a directory overlay.
Args:
overlay: The overlay configuration
"""
if not overlay.persistent:
# Create temporary in-memory storage
self._mounts.append(
MountEntry(
MountType.BIND, "tmpfs", overlay.root_path, ("mkdir",) + self._default_opts
)
)
else:
# Persistent real directory storage (bind to self with mkdir)
self._mounts.append(
MountEntry(
MountType.BIND,
overlay.root_path,
overlay.root_path,
("mkdir",) + self._default_opts,
)
)
def close_overlay(self, overlay: "IsolatedRootConfig"):
"""Add the final mount that closes an overlay."""
self._mounts.extend(overlay.mounts)
self._mounts.append(
MountEntry(MountType.BIND, overlay.root_path, overlay.target, ("recursive",))
)
def render(self, docroot: str) -> str:
"""Render complete configuration to jail.c syntax."""
lines = [f"[{docroot}]"]
lines.extend(m.render() for m in self._mounts)
return "\n".join(lines)
|