Re: [RCF] [PATCH] unprivileged mount/umount

From: Jamie Lokier
Date: Wed May 11 2005 - 16:40:47 EST


Miklos Szeredi wrote:
> > # Make a named namespace.
> > NSNAME='fred'
> > mkdir /var/namespaces/$NSNAME
> > run_in_new_namespace mount -t bind / /var/namespaces/$NSNAME
>
> That's not going to work, since the mount will only affect the new
> namespace.

Ah, good point. I'm still thinking in terms of shared subtrees, where
it might work.

> You'd need clone(), and then in the original namespace
>
> mount --bind /proc/CHILDPID/root /var/namespace/$NSNAME
>
> and then child process can safely exit.

Or pass the file descriptor over a unix domain socket, so that it
doesn't need /proc.

-- Jamie
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/