[libvirt] [PATCH] Ensure we always setup a private mount namespace for LXC controller

Eric Blake eblake at redhat.com
Mon Jan 7 18:20:50 UTC 2013


On 01/07/2013 11:16 AM, Daniel P. Berrange wrote:
> From: "Daniel P. Berrange" <berrange at redhat.com>
> 
> The code for setting up a private /dev/pts for the containers
> is also responsible for making the LXC controller have a
> private mount namespace. Unfortunately the /dev/pts code is
> not run if launching a container without a custom root. This
> causes the LXC FUSE mount to leak into the host FS.
> ---
>  src/lxc/lxc_controller.c | 38 ++++++++++++++++++++++++++------------
>  1 file changed, 26 insertions(+), 12 deletions(-)

ACK.

-- 
Eric Blake   eblake redhat com    +1-919-301-3266
Libvirt virtualization library http://libvirt.org

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 619 bytes
Desc: OpenPGP digital signature
URL: <http://listman.redhat.com/archives/libvir-list/attachments/20130107/59e33491/attachment-0001.sig>


More information about the libvir-list mailing list