Re: [libvirt] [PATCH] Mount fresh instance of sysfs in LXC

2012-05-11 Thread Daniel P. Berrange
On Thu, May 10, 2012 at 04:41:49PM -0400, Daniel J Walsh wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > On 05/10/2012 04:25 PM, Eric Blake wrote: > > On 05/10/2012 10:17 AM, Daniel P. Berrange wrote: > >> From: "Daniel P. Berrange" > >> > >> Currently to make sysfs readonly, we rem

Re: [libvirt] [PATCH] Mount fresh instance of sysfs in LXC

2012-05-10 Thread Eric Blake
On 05/10/2012 10:17 AM, Daniel P. Berrange wrote: > From: "Daniel P. Berrange" > > Currently to make sysfs readonly, we remount the existing > instance and then bind it readonly. Unfortunately this means > sysfs is still showing device objects wrt the host OS namespace. > We need it to reflect th

Re: [libvirt] [PATCH] Mount fresh instance of sysfs in LXC

2012-05-10 Thread Daniel J Walsh
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 05/10/2012 04:25 PM, Eric Blake wrote: > On 05/10/2012 10:17 AM, Daniel P. Berrange wrote: >> From: "Daniel P. Berrange" >> >> Currently to make sysfs readonly, we remount the existing instance and >> then bind it readonly. Unfortunately this mean

[libvirt] [PATCH] Mount fresh instance of sysfs in LXC

2012-05-10 Thread Daniel P. Berrange
From: "Daniel P. Berrange" Currently to make sysfs readonly, we remount the existing instance and then bind it readonly. Unfortunately this means sysfs is still showing device objects wrt the host OS namespace. We need it to reflect the container namespace, so we must mount a completely new insta