OpenVZ Forum


Home » Mailing lists » Devel » containers development plans
Re: [ckrm-tech] containers development plans [message #14874 is a reply to message #14872] Thu, 12 July 2007 10:58 Go to previous messageGo to previous message
dev is currently offline  dev
Messages: 1693
Registered: September 2005
Location: Moscow
Senior Member

Paul Menage wrote:
> On 7/12/07, Kirill Korotaev <dev@sw.ru> wrote:
>
>>Not sure why it requires some additional controller, but surely
>>it is possible to create a match for iptables matching container ID.
>
>
> But which container ID? Don't forget that a task is in one container
> in each hierarchy of which there could be more than one. At its
> simplest this new subsystem could just be a way to tell iptables which
> hierarchy to look at when matching based on container id. In practice
> it's probably reasonable to make the "iptables container id"
> user-settable since userspace is building the iptables rules and might
> want to use its own numbering scheme for the ids. (E.g. all container
> IDs in a particular range have the same kinds of permissions).

won't hierarchy:container-name pair help? :@)

Kirill
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: Re: [RFC][-mm PATCH 2/8] Memory controller containers setup (v3)
Next Topic: containers development plans (July 20 version)
Goto Forum:
  


Current Time: Thu Dec 26 20:12:39 GMT 2024

Total time taken to generate the page: 0.03457 seconds