Re: unprivileged mounts git tree

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Serge E. Hallyn
Date: Thursday, August 7, 2008 - 3:27 pm

Quoting Miklos Szeredi (miklos@szeredi.hu):

Hi Miklos,

so on the bright side I pulled this tree today and it compiled and
passed ltp with no problems.

But then I played around a bit and found I could do the following:

(hmm, i'm trying to remember the exact order :)

as root:
	mmount --bind -o user=500 /home/hallyn/etc/ /home/hallyn/etc/
	mount --bind /mnt /mnt
	mount --make-rshared /mnt
	mount --bind /dev /mnt/dev

as hallyn:
	mmount --bind /mnt /home/hallyn/etc/mnt
	/usr/src/mmount-0.3/mmount --bind mnt/dev mnt/src

Now /mnt/src contained /dev.

Is this what we want?  Do we want to tell the admin it's his fault for
not somehow forcing a slave relationship between /mnt and
/home/hallyn/etc/mnt?  Except I don't think he can do that preemptively,
it has to be done after hallyn does the mmount.

So does that mean that if non-root user X does:

	mount a b

where b is user=X but a is not, then if a is shared we should force it
to be mounted as slave at b?

-serge
--
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
unprivileged mounts git tree, Miklos Szeredi, (Wed May 7, 5:05 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Aug 7, 3:27 pm)
Re: unprivileged mounts git tree, Eric W. Biederman, (Thu Aug 7, 5:07 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Aug 7, 5:25 pm)
Re: unprivileged mounts git tree, Miklos Szeredi, (Mon Aug 25, 4:01 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Wed Aug 27, 8:36 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Wed Aug 27, 8:55 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Wed Aug 27, 11:46 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Wed Sep 3, 11:45 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Wed Sep 3, 2:54 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Wed Sep 3, 3:02 pm)
Re: unprivileged mounts git tree, Miklos Szeredi, (Wed Sep 3, 3:25 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Wed Sep 3, 3:43 pm)
Re: unprivileged mounts git tree, Miklos Szeredi, (Wed Sep 3, 11:42 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Sep 4, 6:28 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Thu Sep 4, 7:06 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Thu Sep 4, 8:40 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Sep 4, 9:17 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Thu Sep 4, 10:42 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Sep 4, 10:48 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Thu Sep 4, 11:03 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Sep 4, 11:49 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Thu Sep 4, 3:26 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Sep 4, 4:32 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Fri Sep 5, 8:31 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Tue Sep 9, 6:34 am)
Re: unprivileged mounts git tree, Eric W. Biederman, (Thu Sep 11, 3:37 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Thu Sep 11, 7:43 am)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Thu Sep 11, 8:20 am)
Re: unprivileged mounts git tree, Miklos Szeredi, (Thu Sep 11, 8:44 am)
Re: unprivileged mounts git tree, Eric W. Biederman, (Thu Sep 11, 11:54 am)
Re: unprivileged mounts git tree, Eric W. Biederman, (Thu Sep 11, 12:04 pm)
Re: unprivileged mounts git tree, Eric W. Biederman, (Thu Sep 11, 12:58 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Fri Sep 12, 3:08 pm)
Re: unprivileged mounts git tree, Eric W. Biederman, (Fri Sep 12, 8:12 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Sat Sep 13, 6:56 pm)
Re: unprivileged mounts git tree, Eric W. Biederman, (Sat Sep 13, 8:06 pm)
Re: unprivileged mounts git tree, Serge E. Hallyn, (Tue Sep 30, 12:39 pm)
Re: unprivileged mounts git tree, Miklos Szeredi, (Mon Oct 6, 4:05 am)