Enrico Tassi wrote: > Am I missing something that the current approach gives (in addition to > not requiring squashfs, genisoimage ...)?
as explained in that very mail, the point is that /every/ other approach is either definitely or potentialy unclean as it taints the chroot. if someone comes up with a better solution which is at least as secure as the current dumb approach wrt/ to the chroot integrity, i'm more than eager to know it. btw, the perfect solution would be read-only bind mounts, but linux doesn't support that :/ -- Address: Daniel Baumann, Burgunderstrasse 3, CH-4562 Biberist Email: [EMAIL PROTECTED] Internet: http://people.panthera-systems.net/~daniel-baumann/ _______________________________________________ Debian-live-devel mailing list [email protected] http://lists.alioth.debian.org/mailman/listinfo/debian-live-devel

