[
https://issues.apache.org/jira/browse/MESOS-5585?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15322911#comment-15322911
]
Jie Yu commented on MESOS-5585:
-------------------------------
Thanks for filing the ticket! Definitely make sense. Probably introduce an
agent flag to allow operators to configure the pids.max for containers.
> Support the pids cgroup in the agent
> ------------------------------------
>
> Key: MESOS-5585
> URL: https://issues.apache.org/jira/browse/MESOS-5585
> Project: Mesos
> Issue Type: Improvement
> Components: slave
> Affects Versions: 1.0.0
> Reporter: Jeffrey Schroeder
> Priority: Minor
>
> http://kernelnewbies.org/Linux_4.3#head-6d5a75f66376fbdc0a77e2386b5aa743d8f7aeb8
> For most fork-bomb style attacks, the memory limit should neutralize them,
> but if the task requests a lot of memory, it could still impact the host.
> This is a nice feature that gives cluster operators some flexibility in
> multi-tenant scenarios.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)