Bind-mounts aren't harmful in containers, so long as they're not used to
bypass MAC policies.
This change allows bind-mounting of any path which isn't a dangerous
filesystem that's otherwise blocked by apparmor.
This also allows switching paths {r}shared or {r}private.
Signed-off-by:
Stéphane Graber <stgraber@ubuntu.com>
| Name |
Last commit
|
Last update |
|---|---|---|
| .. | ||
| apparmor | Loading commit data... | |
| bash | Loading commit data... | |
| etc | Loading commit data... | |
| init | Loading commit data... | |
| selinux | Loading commit data... | |
| sysconfig | Loading commit data... | |
| templates | Loading commit data... | |
| yum | Loading commit data... | |
| Makefile.am | Loading commit data... | |
| acinclude.m4 | Loading commit data... | |
| tls.m4 | Loading commit data... |