LWN.net Logo

A new approach to user namespaces

A new approach to user namespaces

Posted Apr 17, 2012 7:36 UTC (Tue) by trulyexcitingnickname-dontuthink (guest, #84181)
In reply to: A new approach to user namespaces by BenHutchings
Parent article: A new approach to user namespaces

> But perhaps mknod() could be considered unprivileged on a filesystem mounted -o nodev?

This sounds like a nightmare. Using a more secure mount option make going back to the default insecure? That is sure sane---not.


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds