OpenVZ Forum


Home » Mailing lists » Devel » [RFC] ns containers (v2): namespace entering
Re: [RFC] ns containers (v2): namespace entering [message #17500 is a reply to message #10495] Thu, 22 February 2007 20:49 Go to previous message
Paul Menage is currently offline  Paul Menage
Messages: 642
Registered: September 2006
Senior Member
On 2/22/07, Eric W. Biederman <ebiederm@xmission.com> wrote:
>
> Now it is at least worth investigating if you can leak things if you don't
> enter the pid namespace.  If you can not leak things that potentially
> simplifies big chunks of the problem, and we probably don't need the
> intermediate pid namespace, of your suggestion.

If you're happy to have your partially-entered process be viewing the
system pid namespace rather than (container pid namespace) + (self)
then yes, you don't need the intermediate namespace.

Paul
_______________________________________________
Containers mailing list
Containers@lists.osdl.org
https://lists.osdl.org/mailman/listinfo/containers
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: [RFC][PATCH 6/6]: Enable unsharing pid namespace.
Next Topic: [PATCH 0/2] resource control file system - aka containers on top of nsproxy!
Goto Forum:
  


Current Time: Mon Aug 11 20:49:16 GMT 2025

Total time taken to generate the page: 0.49731 seconds