From mboxrd@z Thu Jan 1 00:00:00 1970 From: Libo Chen Subject: Re: [RFC PATCH net-next 0/4] net_cls for sys container Date: Mon, 6 Jan 2014 15:54:53 +0800 Message-ID: <52CA614D.6040702@huawei.com> References: <52C62A44.4070304@huawei.com> Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Return-path: In-Reply-To: Sender: cgroups-owner-u79uwXL29TY76Z2rM5mHXA@public.gmane.org List-ID: Content-Type: text/plain; charset="us-ascii" To: Cong Wang Cc: David Miller , Jamal Hadi Salim , Li Zefan , Eric Dumazet , pshelar-l0M0P4e3n4LQT0dZR+AlfA@public.gmane.org, jasowang-H+wXaHxf7aLQT0dZR+AlfA@public.gmane.org, Simon Horman , Serge Hallyn , Linux Kernel Network Developers , cgroups-u79uwXL29TY76Z2rM5mHXA@public.gmane.org, containers-cunTk1MwBs9QetFLy7KEm3xJsTq8ys+cHZ5vskTnxNA@public.gmane.org, Patrick McHardy , xemul-GEFAQzZX7r8dnm+yROfE0A@public.gmane.org, LKML On 2014/1/3 13:20, Cong Wang wrote: > On Thu, Jan 2, 2014 at 7:11 PM, Libo Chen wrote: >> Hi guys, >> >> Now, lxc created with veth can not be under control by >> cls_cgroup. >> >> the former discussion: >> http://lkml.indiana.edu/hypermail/linux/kernel/1312.1/00214.html >> >> In short, because cls_cgroup relys classid attached to sock >> filter skb, but sock will be cleared inside dev_forward_skb() >> in veth_xmit(). > > > So what are you trying to achieve here? sys container using veth can be controlled by cls_cgroup basing on physic network interface thanks, Libo > > . >