Enrico Tassi wrote:
> Am I missing something that the current approach gives (in addition to
> not requiring squashfs, genisoimage ...)? 

as explained in that very mail, the point is that /every/ other approach
is either definitely or potentialy unclean as it taints the chroot. if
someone comes up with a better solution which is at least as secure as
the current dumb approach wrt/ to the chroot integrity, i'm more than
eager to know it.

btw, the perfect solution would be read-only bind mounts, but linux
doesn't support that :/

-- 
Address:        Daniel Baumann, Burgunderstrasse 3, CH-4562 Biberist
Email:          [EMAIL PROTECTED]
Internet:       http://people.panthera-systems.net/~daniel-baumann/

_______________________________________________
Debian-live-devel mailing list
[email protected]
http://lists.alioth.debian.org/mailman/listinfo/debian-live-devel

Reply via email to