[lxc-users] Unprivileged container squashfs file system

Serge E. Hallyn serge at hallyn.com
Wed Jul 6 20:02:21 UTC 2016


Quoting Judd Meinders (judd.meinders at rockwellcollins.com):
> Thanks for the quick response.  I am particularly interested in the shiftfs
> and may try to patch that in.  A single followup question below.
> 
> On Wed, Jul 6, 2016 at 2:03 PM, Serge E. Hallyn <serge at hallyn.com> wrote:
> 
> > There are several things under way which will help with this,
> >
> > 1. unprivileged mounting of squashfs will allow you to just mount it
> > in the container
> >
> 
> I also have the setup working using the lxc.rootfs and lxc.rootfs.mount to
> mount the squashfs as a loop device.  Doing it this way, I can avoid the
> pre-start hook to mount.  The results within the container are still the
> same.  Is this the unprivileged mounting you are talking about?

No, I mean that root inside the container will actually be able to mount
the squashfs.  Not as useful for rootfs :)


More information about the lxc-users mailing list