From mboxrd@z Thu Jan 1 00:00:00 1970 From: Libo Chen Subject: Re: [RFC PATCH net-next 0/4] net_cls for sys container Date: Mon, 6 Jan 2014 15:54:53 +0800 Message-ID: <52CA614D.6040702@huawei.com> References: <52C62A44.4070304@huawei.com> Mime-Version: 1.0 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: 7bit Cc: David Miller , Jamal Hadi Salim , Li Zefan , Eric Dumazet , , , Simon Horman , Serge Hallyn , "Linux Kernel Network Developers" , , , Patrick McHardy , , LKML To: Cong Wang Return-path: In-Reply-To: Sender: cgroups-owner-u79uwXL29TY76Z2rM5mHXA@public.gmane.org List-Id: netdev.vger.kernel.org On 2014/1/3 13:20, Cong Wang wrote: > On Thu, Jan 2, 2014 at 7:11 PM, Libo Chen wrote: >> Hi guys, >> >> Now, lxc created with veth can not be under control by >> cls_cgroup. >> >> the former discussion: >> http://lkml.indiana.edu/hypermail/linux/kernel/1312.1/00214.html >> >> In short, because cls_cgroup relys classid attached to sock >> filter skb, but sock will be cleared inside dev_forward_skb() >> in veth_xmit(). > > > So what are you trying to achieve here? sys container using veth can be controlled by cls_cgroup basing on physic network interface thanks, Libo > > . >