Opt-out for /sys and /proc
authorW. Trevor King <wking@tremily.us>
Thu, 31 Dec 2015 21:27:30 +0000 (13:27 -0800)
committerW. Trevor King <wking@tremily.us>
Thu, 31 Dec 2015 21:29:30 +0000 (13:29 -0800)
commitacb6ce69c9df2654f439563dbf62187de787ff3c
tree56e7181af4cd0c31a4c637dede45bc10b7f6dd45
parent4ee3f5f9d942dc338e1fe501b0d22246d56bc45f
Opt-out for /sys and /proc

I still feel like these should be opt-in, but the consensus is that
they should be opt-out [1].  That is currently blocking on suggested
syntax around that opt-out.  My suggestion [1] was to borrow the
maskedPaths syntax from [2], but I haven't heard any direct responses
to that.

[1]: Message-ID: <20151216215513.GG25571@odin.tremily.us>
     Subject: Re: Linux: Don't mount /sys and /proc (i.e. rolling back specs#164)
     Date: Wed, 16 Dec 2015 13:55:13 -0800
[2]: https://github.com/opencontainers/specs/pull/186
     Subject: Masked paths setting in the container
tags/20151214235827.GJ4349@odin.tremily.us/bundle-author [new file with mode: 0644]
tags/20151214235827.GJ4349@odin.tremily.us/feature [new file with mode: 0644]
tags/20151214235827.GJ4349@odin.tremily.us/linux [new file with mode: 0644]