On Fri, Feb 05, 2021 at 07:48:10AM -0700, Tom Hromatka <tom.hroma...@oracle.com> wrote: > I can't find an easy workaround for the netlink socket. In another > forum, Stephane posted this possible workaround [1], but no > matter what I tried, I couldn't get the permissions straightened > out to successfully run setns within the container. Ah. I also see now that the NETLINK_CONNECTOR/CN_IDX_PROC doesn't support neither PID namespaces nor user namespaces. So there's little to gain by overcoming this.
Thanks, Michal _______________________________________________ Libcg-devel mailing list Libcg-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/libcg-devel