2015-02-05 12:44 GMT+03:00 Alban Crequy <alban.cre...@gmail.com>:

> Manual page namespaces(7):
>
>        Creation of new namespaces using clone(2) and unshare(2) in most
> cases
>        requires the CAP_SYS_ADMIN capability.  User namespaces are the
>        exception: since  Linux 3.8, no privilege is required to create a
> user
>        namespace.
>

So as i understand i can't create full featured container with network
under non root user (and not have cap_sys_admin)


-- 
Vasiliy Tolstov,
e-mail: v.tols...@selfip.ru
jabber: v...@selfip.ru
_______________________________________________
systemd-devel mailing list
systemd-devel@lists.freedesktop.org
http://lists.freedesktop.org/mailman/listinfo/systemd-devel

Reply via email to