84c0098117
This allows to create overlayfs mounts by unprivileged containers (i.e. in user and mount namespace). It's super-useful for containers. The patch is trivial as I understand from the patch description it's does not have security implications (on top of what user namespaces already have). And it's enabled in ubuntu long time ago. Here is a proof: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1357025 |
||
---|---|---|
.. | ||
apparmor-patches | ||
bridge-stp-helper.patch | ||
common-config.nix | ||
crc-regression.patch | ||
flush_workqueue-export.patch | ||
generate-config.pl | ||
generic.nix | ||
grsec-path.patch | ||
linux-3.10.nix | ||
linux-3.12.nix | ||
linux-3.14.nix | ||
linux-3.18.nix | ||
linux-4.1.nix | ||
linux-4.2.nix | ||
linux-rpi.nix | ||
linux-testing.nix | ||
linux.upstream.template | ||
manual-config.nix | ||
mips-ext3-n32.patch | ||
mips-fpu-sigill.patch | ||
mips-fpureg-emulation.patch | ||
no-xsave.patch | ||
patches.nix | ||
perf.diff | ||
perf.nix | ||
ubuntu-fan-3.patch | ||
ubuntu-fan-4.patch | ||
ubuntu-unprivileged-overlayfs.patch | ||
update.sh |