[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <m1tyd7p7tq.fsf@fess.ebiederm.org>
Date: Fri, 06 May 2011 19:23:29 -0700
From: ebiederm@...ssion.com (Eric W. Biederman)
To: <linux-arch@...r.kernel.org>
Cc: <linux-kernel@...r.kernel.org>, <netdev@...r.kernel.org>,
<linux-fsdevel@...r.kernel.org>, jamal <hadi@...erus.ca>,
Daniel Lezcano <daniel.lezcano@...e.fr>,
Linux Containers <containers@...ts.osdl.org>,
Renato Westphal <renatowestphal@...il.com>
Subject: [PATCH 0/7] Network namespace manipulation with file descriptors
Today there are something things you can use namespaces to implement but
the userspace code is unnecessarily complex and fragile because of
limitations of the kernel interfaces.
This patchset addresses the user interface limitations by introducing
proc files you can open to get file descriptors that keep alive and
refer to your a tasks namespaces. Those file descriptors can be passed
to the new setns system call or the NET_NS_FD argument in netlink
messages.
This patchset is sufficient to implement linux support for named network
namespaces in iproute allowing vpns to be isolated in a network
namespace where you don't have to worry about them conflicting with the
rest of your network.
This patchset is almost sufficient to remove the need for a daemon in a
container to allow you to log in. Unfortunately a few of the namespaces
are not ready to merge yet so I have left them out.
Arch maintainers could you look over patch 7 and verify I have wired
up this new system call correctly.
These changes are also available at:
git://git.kernel.org/pub/scm/linux/kernel/git/ebiederm/linux-2.6-nsfd.git
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@...r.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/
Powered by blists - more mailing lists