On 7/17/20 8:20 AM, Russell Coker wrote:
Does it make sense to not have this enabled by default? Getting meminfo from sysfs seems like a very reasonable and useful thing for a virtualisation system to do. Not allowing that doesn't seem to give any benefit but does have potential for serious problems if things even work like that.
Perhaps the answer is to unconditionally allow reading of sysfs instead. Then writes to sysfs would still be conditional and disabled by default.
-- Chris PeBenito