> Solve that with an unused uid. That ptrace_may_access check is > completely non-intuitive, and a problem if we ever remove the current > == task security module bug avoidance. I thought he wanted to do that without suid? If he can change uids he can as well just use full network namespaces. -Andi -- ak@xxxxxxxxxxxxxxx -- Speaking for myself only. _______________________________________________ Containers mailing list Containers@xxxxxxxxxxxxxxxxxxxxxxxxxx https://lists.linux-foundation.org/mailman/listinfo/containers