On Mon, Jan 04, 2010 at 08:20:40AM +0900, Junichi Uekawa wrote:
> ermm...
> 
> why are you talking about CLONE_NEWPID.

To prevent processes in the chroot to access processes outside the
chroot.

> I think you wanted to talk about CLONE_NEWUSER so that same UID won't affect 
> outside the chroot.

Does it work with CFS, now ? (a while ago it would fail because in this
case it tries to create /sys/kernel/uids/0, which sysfs refuses)



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to