> > That depends. Current patches check the "unprivileged submounts > > allowed under this mount" flag only on the requested mount and not on > > the propagated mounts. Do you see a problem with this? > > I think privileges of this sort should propagate. If I read what you > just said correctly if I have a private mount namespace I won't be able > to mount anything unless when it was setup the unprivileged submount > command was explicitly set. By design yes. Why is that a problem? Miklos - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
- Follow-Ups:
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: ebiederm@xmission.com (Eric W. Biederman)
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- References:
- [patch 00/10] (resend) mount ownership and unprivileged mount syscall
- From: Miklos Szeredi <miklos@szeredi.hu>
- [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Miklos Szeredi <miklos@szeredi.hu>
- Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: "Serge E. Hallyn" <serue@us.ibm.com>
- Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: ebiederm@xmission.com (Eric W. Biederman)
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Ram Pai <linuxram@us.ibm.com>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Miklos Szeredi <miklos@szeredi.hu>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Ram Pai <linuxram@us.ibm.com>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: Miklos Szeredi <miklos@szeredi.hu>
- Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- From: ebiederm@xmission.com (Eric W. Biederman)
- [patch 00/10] (resend) mount ownership and unprivileged mount syscall
- Prev by Date: Re: [PATCH] ACPI: more verbose thermal zone shutdown message
- Next by Date: Re: Problem with ufs nextstep in 2.6.18 (debian)
- Previous by thread: Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- Next by thread: Re: [Devel] Re: [patch 05/10] add "permit user mounts in new namespace" clone flag
- Index(es):
![]() |