Commit acf3a06e authored by David Zeuthen's avatar David Zeuthen
Browse files

Update guidance on situations where there is no polkit authority

Now that GDBusProxy does something reasonable for a masked systemd
service, see

construction of the PolkitAuthority object does not fail anymore. That
doesn't mean the authority is available, though, so mention that users
should check the result of the CheckAuthorization() call as well. Or
in the case of PolkitAuthority, that the error is not a POLKIT_ERROR.

This is actually a nice feature, it means that if you unmask
polkit.service then mechanisms using PolkitAuthority will start using
it without a restart.
Signed-off-by: David Zeuthen's avatarDavid Zeuthen <>
parent a4bdaf59
......@@ -118,7 +118,12 @@
<link linkend="polkit-authority-get-sync">polkit_authority_get_sync()</link>
<link linkend="polkit-authority-get-finish">polkit_authority_get_finish()</link>
returning <constant>NULL</constant>.
returning <constant>NULL</constant> or
<link linkend="polkit-authority-check-authorization">polkit_authority_check_authorization()</link> /
<link linkend="polkit-authority-check-authorization-sync">polkit_authority_check_authorization_sync()</link>
failing with an error not in the
<link linkend="POLKIT-ERROR:CAPS">POLKIT_ERROR</link>
An appropriate way of dealing with the polkit authority
not being available, could be to allow only uid 0 to
perform operations, forbid all operations or something
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment