Bug#770901: lxc: container can suspend the parent system via systemctl without restrictions

2014-12-03 Thread Kenshi Muto
I noticed using lxc.mount.auto feature solved (sysfs and proc will be mounted as read-only system). /usr/share/lxc/config/debian.common.conf --- debian.common.conf 2014-10-14 03:46:44.0 +0900 +++ debian.common.conf 2014-12-03 20:59:31.414601423

Bug#770901: lxc: container can suspend the parent system via systemctl without restrictions

2014-11-24 Thread Kenshi Muto
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Package: lxc Version: 1:1.0.6-3 Severity: important Dear Maintainer, I noticed lxc container could suspend parent system by just typing systemctl suspend when both parent system and container used systemd. (Yes, usually we don't want this