On Wed, 26 Sep 2007, David Newall wrote:I don't know that the so-called requirements are, but if you have a distribution tree mounted on /mnt and you perform the following operations: cd /mnt chroot . bin/bash That shell, will not leave the new root until it exits or executes `chroot`. I've tried the "tricks" about mounting /proc and changing to 'cwd' of init, etc. However, your new root needs to NOT have the chroot utility available and/or the system call needs to be removed or trapped in the runtime library of the new root, because, quite obviously, a root process can do anything it wants. That's how Unix was designed. So, if you don't want somebody to get out of your 'jail' don't provide the keys. It's clearly not a kernel issue. Cheers, Dick Johnson Penguin : Linux version 2.6.22.1 on an i686 machine (5588.29 BogoMips). My book : http://www.AbominableFirebug.com/ _ **************************************************************** The information transmitted in this message is confidential and may be privileged. Any review, retransmission, dissemination, or other use of this information by persons or entities other than the intended recipient is prohibited. If you are not the intended recipient, please notify Analogic Corporation immediately - by replying to this message or by sending an email to DeliveryErrors@analogic.com - and destroy all copies of this information, including any attachments, without reading or disclosing them. Thank you. -
| Pierre Ossman | Re: [RFC][PATCH] cpuidle: avoid singing capacitors |
| Greg KH | [GIT PATCH] driver core patches against 2.6.24 |
| Greg KH | Re: Announce: Linux-next (Or Andrew's dream :-)) |
| Rene Herman | 2.6.26, PAT and AMD family 6 |
git: | |
| Jesper Krogh | Re: NIU - Sun Neptune 10g - Transmit timed out reset (2.6.24) |
| Gerrit Renker | [PATCH 27/37] dccp: Integration of dynamic feature activation - part 2 (server side) |
| Arjan van de Ven | Re: [GIT]: Networking |
| Radu Rendec | htb parallelism on multi-core platforms |
