Skip to content

  • Projects
  • Groups
  • Snippets
  • Help
  • This project
    • Loading...
  • Sign in / Register
L
lxc
  • Project
    • Overview
    • Details
    • Activity
    • Cycle Analytics
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
    • Charts
  • Issues 0
    • Issues 0
    • List
    • Board
    • Labels
    • Milestones
  • Merge Requests 0
    • Merge Requests 0
  • CI / CD
    • CI / CD
    • Pipelines
    • Jobs
    • Schedules
    • Charts
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Members
    • Members
  • Collapse sidebar
  • Activity
  • Graph
  • Charts
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
  • Chen Yisong
  • lxc
  • Repository

Switch branch/tag
  • lxc
  • config
  • templates
  • common.seccomp
Find file
BlameHistoryPermalink
  • Serge Hallyn's avatar
    seccomp: add rule to reject umount -f · 6166fa6d
    Serge Hallyn authored Dec 19, 2014
    If a container has a bind mount from a host nfs or fuse
    filesystem, and does 'umount -f', it will disconnect the
    host's filesystem.  This patch adds a seccomp rule to
    block umount -f from a container.  It also adds that rule
    to the default seccomp profile.
    
    Thanks stgraber for the idea :)
    Signed-off-by: 's avatarSerge Hallyn <serge.hallyn@ubuntu.com>
    Acked-by: 's avatarStéphane Graber <stgraber@ubuntu.com>
    6166fa6d
common.seccomp 199 Bytes
EditWeb IDE
×

Replace common.seccomp

Attach a file by drag & drop or click to upload


Cancel
A new branch will be created in your fork and a new merge request will be started.