All of lore.kernel.org
 help / color / mirror / Atom feed
* plan9 semantics on Linux - mount namespaces
@ 2018-02-13 22:12 Enrico Weigelt
       [not found] ` <0f058286-a432-379b-f559-f2fe713807ab-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
  2018-02-13 22:19 ` Enrico Weigelt
  0 siblings, 2 replies; 43+ messages in thread
From: Enrico Weigelt @ 2018-02-13 22:12 UTC (permalink / raw)
  To: linux-kernel

Hi folks,


I'm currently trying to implement plan9 semantics on Linux and
yet sorting out how to do the mount namespace handling.

On plan9, any unprivileged process can create its own namespace
and mount/bind at will, while on Linux this requires CAP_SYS_ADMIN.

What is the reason for not allowing arbitrary users to create their
own private mount namespace ? What could go wrong here ?

IMHO, we could allow mount/bind under the following conditions:

* the process is in a private mount namespace
* no suid-flag is honored (either force all mounts to nosuid or
   completely mask it out)
* only certain whitelisted filesystems allowed (eg. 9P and FUSE)

Maybe that all could be enabled by a new capability.


any suggestions ?


--mtx

-- 
Enrico Weigelt, metux IT consult
Free software and Linux embedded engineering
info@metux.net -- +49-151-27565287

^ permalink raw reply	[flat|nested] 43+ messages in thread

end of thread, other threads:[~2018-02-16 18:27 UTC | newest]

Thread overview: 43+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2018-02-13 22:12 plan9 semantics on Linux - mount namespaces Enrico Weigelt
     [not found] ` <0f058286-a432-379b-f559-f2fe713807ab-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-13 22:19   ` Enrico Weigelt
2018-02-13 22:19 ` Enrico Weigelt
     [not found]   ` <5633d335-3926-d98f-d6d7-948b1e2a0b2c-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-13 22:27     ` Aleksa Sarai
2018-02-13 22:27       ` Aleksa Sarai
2018-02-14  0:01       ` Enrico Weigelt
2018-02-14  0:01       ` Enrico Weigelt
     [not found]         ` <39b08c53-3449-3164-c1b1-44ac587dd4ea-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14  4:54           ` Aleksa Sarai
2018-02-14  4:54             ` Aleksa Sarai
2018-02-14 10:18             ` Enrico Weigelt
2018-02-14 10:18             ` Enrico Weigelt
     [not found]               ` <9c097fd9-3035-d5be-a829-fc18e7734f18-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14 10:24                 ` Aleksa Sarai
2018-02-14 10:24               ` Aleksa Sarai
2018-02-14 11:27                 ` Enrico Weigelt
2018-02-14 11:27                   ` Enrico Weigelt
2018-02-14 11:30                   ` Richard Weinberger
     [not found]                     ` <CAFLxGvzxLP_UTQbwEY99bQfyftWzZHwaOP+WrzJ8099EKtbVLg-JsoAwUIsXosN+BqQ9rBEUg@public.gmane.org>
2018-02-14 12:38                       ` Enrico Weigelt
2018-02-14 12:38                         ` Enrico Weigelt
2018-02-14 12:53                         ` Richard Weinberger
2018-02-14 14:03                           ` Enrico Weigelt
2018-02-14 14:03                             ` Enrico Weigelt
     [not found]                             ` <a2a6f189-008e-38f2-afcb-b9393d8d440a-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14 14:19                               ` Richard Weinberger
2018-02-14 14:19                                 ` Richard Weinberger
2018-02-14 15:02                                 ` Enrico Weigelt
2018-02-14 15:02                                 ` Enrico Weigelt
     [not found]                                   ` <4f620eb7-c00c-487b-2e06-8cc4c97af38c-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14 15:17                                     ` Richard Weinberger
2018-02-14 15:17                                       ` Richard Weinberger
2018-02-14 17:21                                       ` Enrico Weigelt
2018-02-14 17:21                                       ` Enrico Weigelt
2018-02-14 17:50                                         ` Richard Weinberger
2018-02-14 18:01                                           ` Enrico Weigelt
2018-02-14 18:01                                           ` Enrico Weigelt
     [not found]                                             ` <794929ce-0ecb-4c93-d51e-e94fcf749cfa-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14 18:12                                               ` Richard Weinberger
2018-02-14 18:12                                                 ` Richard Weinberger
2018-02-14 18:32                                                 ` Enrico Weigelt
2018-02-14 18:32                                                 ` Enrico Weigelt
     [not found]                                         ` <e924b563-44c6-d678-a6cc-1181f4b820d5-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14 17:50                                           ` Richard Weinberger
2018-02-14 20:39                                           ` Aleksa Sarai
2018-02-14 20:39                                             ` Aleksa Sarai
     [not found]                         ` <4864d279-9a3f-eaf4-c297-ea34be604e41-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14 12:53                           ` Richard Weinberger
     [not found]                   ` <24ddea73-5c84-e098-caae-8a4c14834cbd-EcKl7qYKIbxeoWH0uzbU5w@public.gmane.org>
2018-02-14 11:30                     ` Richard Weinberger
2018-02-16 18:26     ` Eric W. Biederman
2018-02-16 18:26       ` Eric W. Biederman

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.