Re: user- vs kernel-level resource sandbox for Linux?

From: Alan Cox
Date: Tue Nov 30 2004 - 16:26:27 EST


On Maw, 2004-11-30 at 20:47, Marek Habersack wrote:
> That's my current impression. I also considered writing a simple kernel
> module to intercept sys_brk, but that seemed to be a bit clumsy. We have

You have to consider kernel side resources too - page tables, memory
maps
and the like which jails don't really fix.

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/