[buildd-tools-devel] Bug#637870: Bug#637870: Bug#637870: Bug#637870: Provide more isolation than just chroot

Roger Leigh rleigh at codelibre.net
Mon Aug 15 16:13:38 UTC 2011


On Mon, Aug 15, 2011 at 06:00:00PM +0200, Vincent Bernat wrote:
> OoO Lors de la soirée naissante du lundi 15 août 2011, vers 17:23, Roger
> Leigh <rleigh at codelibre.net> disait :
> 
> > % ls /proc/self/ns
> > ipc  net  uts
> 
> > There's no "mnt" namespace here, which might be an issue.  This is with
> > Linux 3.0.0.  Maybe it's not supported in /proc yet?
> 
> Yes, no mnt, no pid. It does not seem to be implemented in 3.0.1:
>  http://lxr.linux.no/linux+v3.0.1/include/linux/proc_fs.h#L244
> 
> Patches seem to be available here (some of them are merged mainline):
>  http://lxc.sourceforge.net/patches/linux/
> 
> There is no update since 2.6.38. And I don't find any patch update since
> March 2011 on the web.

OK, so it's still essentially a "work in progress" in the kernel.
Looks like we'll have to wait a few months before we can implement this
in schroot, but I'm happy to do so once it's ready!


Regards,
Roger

-- 
  .''`.  Roger Leigh
 : :' :  Debian GNU/Linux             http://people.debian.org/~rleigh/
 `. `'   Printing on GNU/Linux?       http://gutenprint.sourceforge.net/
   `-    GPG Public Key: 0x25BFB848   Please GPG sign your mail.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/buildd-tools-devel/attachments/20110815/9a14c6e4/attachment.pgp>


More information about the Buildd-tools-devel mailing list