Since linux version 3.2.20-1, it is possible to set a 'hidepid' mount option on procfs, which restricts the visibility of unprivileged users to see other users' processes.
initscripts correctly applies this option if present in /etc/fstab. Should d-i allow procfs mount opions to be configured at installation time (and presumably pre-seeded), or should this be left to post- installation? Ben. -- Ben Hutchings Computers are not intelligent. They only think they are.
signature.asc
Description: This is a digitally signed message part