>> Yet another set of per-namespace IDs along with CLONE_NEWXXX ones? >> I currently have a way to create all namespaces we have with one >> syscall. Why don't we have an ability to enter them all with one syscall? > > The CLONE_NEWXXX series of bits has been an royal pain to work with, > and it appears to be unnecessary complications for no gain. That's the answer for the "Yet another set..." question. How about the "Why don't we have..." one? > Eric > > -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html