[Lxc-users] Hiding container processes from Host/HN's 'ps'

ian sison (mailing list) ian.sison at gmail.com
Tue May 3 10:53:05 UTC 2011


Hi all -

In openvz, a certain sysctl parameter,

kernel.pid_ns_hide_child = 1

when executed at HN system startup will hide any processes that run
inside the running containers from appearing in the output of 'ps'.
This makes for a cleaner 'ps' output in the hardware node, and
prevents inadvertent container malfunctions when something like
'killall -9 httpd' is executed in the command line of the HN.

How can i do the same with LXC?  My google searches draw up a blank.

- Ian




More information about the lxc-users mailing list