Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 21 May 2012 19:57:48 +0000
From:      "Poul-Henning Kamp" <phk@phk.freebsd.dk>
To:        Chris Rees <crees@FreeBSD.org>
Cc:        freebsd-hackers@FreeBSD.org, freebsd-jail@FreeBSD.org, David Windsor <dwindsor@gmail.com>
Subject:   Re: PID/UID namespaces
Message-ID:  <39149.1337630268@critter.freebsd.dk>
In-Reply-To: Your message of "Mon, 21 May 2012 20:26:15 %2B0100." <CADLo838voV_Xi%2BA_WjD3H7E_d4Qi%2BOdJYnHPoim5BbZAWnXFyg@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
In message <CADLo838voV_Xi+A_WjD3H7E_d4Qi+OdJYnHPoim5BbZAWnXFyg@mail.gmail.com>
, Chris Rees writes:

>It would certainly prevent many common problems when setting up jails;
>UID collision is much more common than you'd think, given that the
>default UIDs remain the same.

Uhm... jails have separate UID/GID spaces.

Filesystems mounted or visible in multiple jails act as shared UID/GID
(sub-)spaces for those jails, but there is now way to avoid that, it's
a direct consequence of the sharing of the filesystems.


-- 
Poul-Henning Kamp       | UNIX since Zilog Zeus 3.20
phk@FreeBSD.ORG         | TCP/IP since RFC 956
FreeBSD committer       | BSD since 4.3-tahoe    
Never attribute to malice what can adequately be explained by incompetence.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?39149.1337630268>