On Fri, Feb 05, 2021 at 07:48:10AM -0700, Tom Hromatka 
<tom.hroma...@oracle.com> wrote:
> I can't find an easy workaround for the netlink socket.  In another
> forum, Stephane posted this possible workaround [1], but no
> matter what I tried, I couldn't get the permissions straightened
> out to successfully run setns within the container.
Ah. I also see now that the NETLINK_CONNECTOR/CN_IDX_PROC doesn't
support neither PID namespaces nor user namespaces. So there's little to
gain by overcoming this.

Thanks,
Michal

_______________________________________________
Libcg-devel mailing list
Libcg-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/libcg-devel

Reply via email to