[lxc-devel] Nested namespaces

riya khanna riyakhanna1983 at gmail.com
Sun Sep 28 23:31:18 UTC 2014


Hi,

As I understand, kernel currently supports six namespaces. Is it
possible for a process inside a container (running with different
namespaces - all six) to escape the container by unshare() 'ing ?

Would this be different for privileged/unprivileged containers?

Thanks,
Riya


More information about the lxc-devel mailing list