Skip to content
  • Daniel Golle's avatar
    procd: jail fixes and improvements · 7c2e0fa5
    Daniel Golle authored
    
    
     32c717e jail: only mess with rootfs if CLONE_NEWNS was set
     b275a62 instance: harmonize instance API
     511fd97 jail: make /proc more secure
     4953b7c jail: mount /sys read-only
     a4d6442 jail: replace /etc/resolv.conf with symlink in extroot+overlay
     a4cc165 jail: always mount /dev as additional tmpfs
    
    Signed-off-by: default avatarDaniel Golle <daniel@makrotopia.org>
    7c2e0fa5