Support mounts by unprivileged users
Registered by
Serge Hallyn
Much work has been done to safely support mounting (especially bind
mounts) by unprivileged users. The last attempt (in 2008) to push this
functionality stopped the problem of possible DOS on rmdir/unlink
by unprivileged users, as documented at
http://
Working with the community on a workaround and finally pushing this
functionality could allow a pretty great reduction in the amount
of root access needed to do useful mounting.
Blueprint information
- Status:
- Complete
- Approver:
- Robbie Williamson
- Priority:
- Undefined
- Drafter:
- Serge Hallyn
- Direction:
- Needs approval
- Assignee:
- Serge Hallyn
- Definition:
- Obsolete
- Series goal:
- None
- Implementation:
-
Unknown
- Milestone target:
- None
- Started by
- Completed by
- Serge Hallyn
Whiteboard
Work Items:
[kees] Review patch and summarize analysis/
[serge-hallyn] Follow up on patch to fix scm credentials across userns (ebiederman's patch is in): DONE
(?)