Skip to content
Commit a85fb273 authored by Eric W. Biederman's avatar Eric W. Biederman
Browse files

vfs: Allow chroot if you have CAP_SYS_CHROOT in your user namespace



Once you are confined to a user namespace applications can not gain
privilege and escape the user namespace so there is no longer a reason
to restrict chroot.

Acked-by: default avatarSerge Hallyn <serge.hallyn@canonical.com>
Signed-off-by: default avatar"Eric W. Biederman" <ebiederm@xmission.com>
parent 50804fe3
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment