• Andrey Vagin's avatar
    zdtm: prepare a file tree for userns · 0014a12d
    Andrey Vagin authored
    Here are two issues:
    1. All mounts in a new user namespace are locked, so
    we need to create a new root mount. We need to bind-mount root to
    itself.
    2. /proc and /sys must be mounted before umounting /proc and /sys
    which were inhereted. It's a security policy.
    
    """
    Author: Eric W. Biederman <ebiederm@xmission.com>
    Date:   Sun Mar 24 14:28:27 2013 -0700
    
        userns: Restrict when proc and sysfs can be mounted
    
        Only allow unprivileged mounts of proc and sysfs if they are already
        mounted when the user namespace is created.
    """
    Signed-off-by: 's avatarAndrey Vagin <avagin@openvz.org>
    Signed-off-by: 's avatarPavel Emelyanov <xemul@parallels.com>
    0014a12d
Name
Last commit
Last update
..
arch Loading commit data...
Makefile Loading commit data...
cpuid.h Loading commit data...
datagen.c Loading commit data...
lock.c Loading commit data...
lock.h Loading commit data...
msg.c Loading commit data...
ns.c Loading commit data...
ns.h Loading commit data...
parseargs.c Loading commit data...
parseargs.sh Loading commit data...
stop_and_chk.sh Loading commit data...
streamutil.c Loading commit data...
tcp.c Loading commit data...
test.c Loading commit data...
zdtmtst.h Loading commit data...