On Fri, Mar 07, 2014 at 05:39:07PM -0600, Serge Hallyn wrote:
> So the reason I don't just have a
> mount("", "/", NULL, MS_SLAVE|MS_REC, 0) unconditionally at container
> start is twofold - first, some people have perfectly find non-shared
> non-slave / and don't want it turned *into* a slave.

But this only happens inside the private copy of the mount namespace
that exists during the container's creation.  The effects of it do
not propagate to the host's main mount namespace in my testing.
_______________________________________________
lxc-users mailing list
[email protected]
http://lists.linuxcontainers.org/listinfo/lxc-users

Reply via email to