> > That depends. Current patches check the "unprivileged submounts > > allowed under this mount" flag only on the requested mount and not on > > the propagated mounts. Do you see a problem with this? > > I think privileges of this sort should propagate. If I read what you > just said correctly if I have a private mount namespace I won't be able > to mount anything unless when it was setup the unprivileged submount > command was explicitly set. By design yes. Why is that a problem? Miklos - To unsubscribe from this list: send the line "unsubscribe linux-fsdevel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html