Re: [RFC] [patch 0/6] [Network namespace] introduction

From: Al Viro
Date: Sun Jun 18 2006 - 14:46:17 EST


On Fri, Jun 09, 2006 at 11:02:02PM +0200, dlezcano@xxxxxxxxxx wrote:
> What is missing ?
> -----------------
> The routes are not yet isolated, that implies:
>
> - binding to another container's address is allowed
>
> - an outgoing packet which has an unset source address can
> potentially get another container's address
>
> - an incoming packet can be routed to the wrong container if there
> are several containers listening to the same addr:port

- renaming an interface in one "namespace" affects everyone.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/