Merge pull request #7306 from mheon/private_mount

Change /sys/fs/cgroup/systemd mount to rprivate
This commit is contained in:
OpenShift Merge Robot
2020-08-12 23:23:16 +02:00
committed by GitHub

View File

@ -626,7 +626,7 @@ func (c *Container) setupSystemd(mounts []spec.Mount, g generate.Generator) erro
Destination: "/sys/fs/cgroup/systemd",
Type: "bind",
Source: "/sys/fs/cgroup/systemd",
Options: []string{"bind", "nodev", "noexec", "nosuid", "rslave"},
Options: []string{"bind", "nodev", "noexec", "nosuid", "rprivate"},
}
g.AddMount(systemdMnt)
g.AddLinuxMaskedPaths("/sys/fs/cgroup/systemd/release_agent")