The only cases where we really need to be privileged with respect
to the host is when we are trying to mknod, and in some cases
to do with a physical network device. This patch leaves the
detection of the network device cases as a TODO.
This should fix the currently broken case of starting a privileged
container with at least one veth nic, nested inside an unprivileged
container.
Cc: Tycho Andersen <tycho@tycho.ws>
Signed-off-by:
Serge Hallyn <shallyn@cisco.com>
| Name |
Last commit
|
Last update |
|---|---|---|
| .. | ||
| aufs.c | Loading commit data... | |
| aufs.h | Loading commit data... | |
| btrfs.c | Loading commit data... | |
| btrfs.h | Loading commit data... | |
| dir.c | Loading commit data... | |
| dir.h | Loading commit data... | |
| loop.c | Loading commit data... | |
| loop.h | Loading commit data... | |
| lvm.c | Loading commit data... | |
| lvm.h | Loading commit data... | |
| nbd.c | Loading commit data... | |
| nbd.h | Loading commit data... | |
| overlay.c | Loading commit data... | |
| overlay.h | Loading commit data... | |
| rbd.c | Loading commit data... | |
| rbd.h | Loading commit data... | |
| rsync.c | Loading commit data... | |
| rsync.h | Loading commit data... | |
| storage.c | Loading commit data... | |
| storage.h | Loading commit data... | |
| storage_utils.c | Loading commit data... | |
| storage_utils.h | Loading commit data... | |
| zfs.c | Loading commit data... | |
| zfs.h | Loading commit data... |