[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Virtio-fs] [PATCH v3] virtiofsd: add container-friendly -o sandbox=
From: |
Chirantan Ekbote |
Subject: |
Re: [Virtio-fs] [PATCH v3] virtiofsd: add container-friendly -o sandbox=chroot option |
Date: |
Mon, 19 Oct 2020 18:43:41 +0900 |
On Thu, Oct 8, 2020 at 5:55 PM Stefan Hajnoczi <stefanha@redhat.com> wrote:
>
> virtiofsd cannot run in a container because CAP_SYS_ADMIN is required to
> create namespaces.
>
In crosvm we deal with this by also creating a user namespace, which
then allows us to create the mount, net, and pid namespaces as well.
Could that also work for virtiofsd?