Re: [lxc-users] Unprivileged networking option?

2020-03-05 Thread Fajar A. Nugraha
On Thu, Mar 5, 2020 at 11:43 PM Ede Wolf wrote: > > Hello Andrey, > > thanks for getting back to me. The reason for unpriviledged containers > is basically user id separation. > > I fancy the idea that each container has its own id (range) and the user > ids are not being shared between containers

Re: [lxc-users] Unprivileged networking option?

2020-03-05 Thread Ede Wolf
Am 05.03.20 um 03:20 schrieb Serge E. Hallyn: and you currently need a privileged lxc-user-nic to setup network. Thanks, as that basically sums up my question, as this lxc-user nic only seems to work with a standard bridge. Unless I am misinformed, which was actually my hope. Or maybe there i

Re: [lxc-users] Unprivileged networking option?

2020-03-05 Thread Ede Wolf
Hello Andrey, thanks for getting back to me. The reason for unpriviledged containers is basically user id separation. I fancy the idea that each container has its own id (range) and the user ids are not being shared between containers (and the host). So it is another level of isolation and