User namespace feature freeze lifted

Seth Forshee seth.forshee at canonical.com
Tue Sep 15 18:23:12 UTC 2015


On Tue, Sep 15, 2015 at 12:27:46PM -0500, Eric W. Biederman wrote:
> 
> As of v4.3-rc1 all of the security issues I am aware of with the user
> namespace have been addressed.  If someone knows of something I have
> overlooked please let me know.
> 
> As much as humanly possible I want to avoid security bugs in the future
> so I will endeavour to ensure any future user namespace patches receive
> a close review.
> 
> As for merging features I expect I will likley start with Seth's code
> for associating superblock with user namespaces, and then move on to
> Lukasz's code for figuring out how to add namespace for smack.

As for my patches, I'm in the process of testing after rebasing onto
4.3-rc1. I should be sending an update in the next day or so, though
nothing will change except for resolving merge conflicts and fixing
that one inadvertent change I introduced in v2.

Seth


More information about the Containers mailing list