Re: [Propose] Isolate core_pattern in mnt namespace.

2016-01-05 Thread Eric W. Biederman
Dongsheng Yang writes: > On 12/24/2015 12:36 AM, Eric W. Biederman wrote: >> Dongsheng Yang writes: > [...] > > Hi Eric, > Happy new year and sorry for the late reply. >> >> Given the other constraints on an implementation the pid namespace looks >> by far the one best suited to host such

Re: [Propose] Isolate core_pattern in mnt namespace.

2016-01-04 Thread Dongsheng Yang
On 12/24/2015 12:36 AM, Eric W. Biederman wrote: Dongsheng Yang writes: [...] Hi Eric, Happy new year and sorry for the late reply. Given the other constraints on an implementation the pid namespace looks by far the one best suited to host such a sysctl if it is possible to implement

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-23 Thread Eric W. Biederman
Dongsheng Yang writes: > On 12/22/2015 05:52 AM, Eric W. Biederman wrote: >> For your case that sounds like it would work. Unfortunately for this to >> be generally applicable and to let the OS in the contianer control it's >> fate the core dump pattern needs to be supported. >> >> Otherwise som

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-22 Thread Dongsheng Yang
On 12/22/2015 05:52 AM, Eric W. Biederman wrote: Dongsheng Yang writes: On 12/20/2015 05:47 PM, Eric W. Biederman wrote: Dongsheng Yang writes: On 12/20/2015 10:37 AM, Al Viro wrote: On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: On 12/17/2015 07:23 PM, Dongsheng Yang wr

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-22 Thread Dongsheng Yang
On 12/22/2015 11:12 AM, Kamezawa Hiroyuki wrote: > On 2015/12/22 6:52, Eric W. Biederman wrote: >> Dongsheng Yang writes: >> >>> On 12/20/2015 05:47 PM, Eric W. Biederman wrote: Dongsheng Yang writes: > On 12/20/2015 10:37 AM, Al Viro wrote: >> On Sun, Dec 20, 2015 at 10:14:29AM

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-21 Thread Kamezawa Hiroyuki
On 2015/12/22 6:52, Eric W. Biederman wrote: > Dongsheng Yang writes: > >> On 12/20/2015 05:47 PM, Eric W. Biederman wrote: >>> Dongsheng Yang writes: >>> On 12/20/2015 10:37 AM, Al Viro wrote: > On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: >> On 12/17/2015 07:23

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-21 Thread Eric W. Biederman
Dongsheng Yang writes: > On 12/20/2015 05:47 PM, Eric W. Biederman wrote: >> Dongsheng Yang writes: >> >>> On 12/20/2015 10:37 AM, Al Viro wrote: On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: > On 12/17/2015 07:23 PM, Dongsheng Yang wrote: >> Hi guys, >>

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-20 Thread Dongsheng Yang
On 12/20/2015 05:47 PM, Eric W. Biederman wrote: Dongsheng Yang writes: On 12/20/2015 10:37 AM, Al Viro wrote: On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: On 12/17/2015 07:23 PM, Dongsheng Yang wrote: Hi guys, We are working on making core dump behaviour isolated i

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-20 Thread Kamezawa Hiroyuki
On 2015/12/20 18:47, Eric W. Biederman wrote: > Dongsheng Yang writes: > >> On 12/20/2015 10:37 AM, Al Viro wrote: >>> On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: On 12/17/2015 07:23 PM, Dongsheng Yang wrote: > Hi guys, > We are working on making core dump b

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-20 Thread Eric W. Biederman
Dongsheng Yang writes: > On 12/20/2015 10:37 AM, Al Viro wrote: >> On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: >>> On 12/17/2015 07:23 PM, Dongsheng Yang wrote: Hi guys, We are working on making core dump behaviour isolated in container. But the problem is,

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-19 Thread Dongsheng Yang
On 12/20/2015 10:37 AM, Al Viro wrote: On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: On 12/17/2015 07:23 PM, Dongsheng Yang wrote: Hi guys, We are working on making core dump behaviour isolated in container. But the problem is, the /proc/sys/kernel/core_pattern is a kerne

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-19 Thread Al Viro
On Sun, Dec 20, 2015 at 10:14:29AM +0800, Dongsheng Yang wrote: > On 12/17/2015 07:23 PM, Dongsheng Yang wrote: > >Hi guys, > > We are working on making core dump behaviour isolated in > >container. But the problem is, the /proc/sys/kernel/core_pattern > >is a kernel wide setting, not belongs t

Re: [Propose] Isolate core_pattern in mnt namespace.

2015-12-19 Thread Dongsheng Yang
On 12/17/2015 07:23 PM, Dongsheng Yang wrote: Hi guys, We are working on making core dump behaviour isolated in container. But the problem is, the /proc/sys/kernel/core_pattern is a kernel wide setting, not belongs to a container. So we want to add core_pattern into mnt namespace. What

[Propose] Isolate core_pattern in mnt namespace.

2015-12-17 Thread Dongsheng Yang
Hi guys, We are working on making core dump behaviour isolated in container. But the problem is, the /proc/sys/kernel/core_pattern is a kernel wide setting, not belongs to a container. So we want to add core_pattern into mnt namespace. What do you think about it? Yang -