From mboxrd@z Thu Jan 1 00:00:00 1970 From: Tim Hockin Subject: Re: Using fs views to isolate untrusted processes: I need an assistant architect in the USA for Phase I of a DARPA funded linux kernel project Date: Wed, 25 Aug 2004 13:56:18 -0700 Message-ID: <20040825205618.GA7992@hockin.org> References: <410D96DC.1060405@namesys.com> Mime-Version: 1.0 Return-path: list-help: list-unsubscribe: list-post: Errors-To: flx@namesys.com Content-Disposition: inline In-Reply-To: List-Id: Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: Rik van Riel Cc: Hans Reiser , LKML , ReiserFS List , michael.waychison@sun.com On Wed, Aug 25, 2004 at 04:25:24PM -0400, Rik van Riel wrote: > > You can think of this as chroot on steroids. > > Sounds like what you want is pretty much the namespace stuff > that has been in the kernel since the early 2.4 days. > > No need to replicate VFS functionality inside the filesystem. When I was at Sun, we talked a lot about this. Mike, does Sun have any iterest in this? We found a lot of shortcomings in implementing various namespace-ish things.