[ https://issues.apache.org/jira/browse/MESOS-4757?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15172684#comment-15172684 ]
Cong Wang commented on MESOS-4757: ---------------------------------- Appc already fixes this by: https://github.com/appc/spec/pull/315/files . Mesos could take the similar approach. > Mesos containerizer should get uid/gids before pivot_root. > ---------------------------------------------------------- > > Key: MESOS-4757 > URL: https://issues.apache.org/jira/browse/MESOS-4757 > Project: Mesos > Issue Type: Bug > Reporter: Jie Yu > Assignee: Jie Yu > > Currently, we call os::su(user) after pivot_root. This is problematic because > /etc/passwd and /etc/group might be missing in container's root filesystem. > We should instead, get the uid/gids before pivot_root, and call > setuid/setgroups after pivot_root. -- This message was sent by Atlassian JIRA (v6.3.4#6332)