Miklos Szeredi <miklos@szeredi.hu> writes: > That depends. Current patches check the "unprivileged submounts > allowed under this mount" flag only on the requested mount and not on > the propagated mounts. Do you see a problem with this? I think privileges of this sort should propagate. If I read what you just said correctly if I have a private mount namespace I won't be able to mount anything unless when it was setup the unprivileged submount command was explicitly set. Eric - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
- Follow-Ups:
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Miklos Szeredi <miklos@szeredi.hu>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- References:
- [patch 00/10] (resend) mount ownership and unprivileged mount syscall
- From: Miklos Szeredi <miklos@szeredi.hu>
- [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Miklos Szeredi <miklos@szeredi.hu>
- Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: "Serge E. Hallyn" <serue@us.ibm.com>
- Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: ebiederm@xmission.com (Eric W. Biederman)
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Ram Pai <linuxram@us.ibm.com>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Miklos Szeredi <miklos@szeredi.hu>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Ram Pai <linuxram@us.ibm.com>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Miklos Szeredi <miklos@szeredi.hu>
- [patch 00/10] (resend) mount ownership and unprivileged mount syscall
- Prev by Date: Re: [patch 0/8] unprivileged mount syscall
- Next by Date: Re: [Announce] [patch] Modular Scheduler Core and Completely Fair Scheduler [CFS]
- Previous by thread: Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- Next by thread: Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- Index(es):
![]() |