On Wed, Mar 6, 2013 at 2:25 PM, Serge Hallyn wrote:
> just to help play with user namespaces some more I pushed a C version
> of Eric's script for completely unprivileged use of user namespaces to
> https://code.launchpad.net/~serge-hallyn/+junk/nsexec and to the
> nsexec package in ppa:serge-hall
Serge Hallyn writes:
> Quoting Eric W. Biederman (ebied...@xmission.com):
> ...
>> For what it's worth. If you are going to do a combined binary, and you
>> are just going to worry about yourself. You don't have to fork to
>> write /proc/self/uid_map with 0 $old_uid 1.
>
> Well, shoot! I figur
Quoting Eric W. Biederman (ebied...@xmission.com):
...
> For what it's worth. If you are going to do a combined binary, and you
> are just going to worry about yourself. You don't have to fork to
> write /proc/self/uid_map with 0 $old_uid 1.
Well, shoot! I figured since we'd already unshared, o
Kees Cook writes:
> On Wed, Mar 6, 2013 at 2:25 PM, Serge Hallyn wrote:
>> just to help play with user namespaces some more I pushed a C version
>> of Eric's script for completely unprivileged use of user namespaces to
>> https://code.launchpad.net/~serge-hallyn/+junk/nsexec and to the
>> nsexec
Hey guys,
just to help play with user namespaces some more I pushed a C version
of Eric's script for completely unprivileged use of user namespaces to
https://code.launchpad.net/~serge-hallyn/+junk/nsexec and to the
nsexec package in ppa:serge-hallyn/userns-natty. Appending the code
below as well