[PATCH 0/3] keys: play nicely with user namespaces

David Howells dhowells at redhat.com
Thu Dec 18 18:30:24 PST 2008


Serge E. Hallyn <serue at us.ibm.com> wrote:

> Yup - patch coming (probably next week) for that,

Thanks.

> but there's the question, given that user namespaces are hierarchical, of
> whether, if pidns B is a child of pidns A created by userid 500, a task in
> pidns A should see keys in userns B (listed as belonging to userid 500).

Does that mean all the UIDs of B should be part of A?  Or is just UID 500
inherited?  Or is UID 0 in B the same as UID 500 in A?

David


More information about the Containers mailing list