1165276867 M * bronson What version of vserver would you guys suggest I run on my server? 1165276884 M * daniel_hozac depends on if you need any 2.1+ only features. 1165276900 M * Bertl atm, 2.1.1.3 or 2.2.0-pre5 (IIRC) 1165276902 M * bronson daniel_hozac: i'll check the changelogs. 1165276935 M * daniel_hozac Bertl: which reminds me, should i add the 2.6.19 patch to the devel prepatch section now? 1165276966 M * Bertl yes, I think we are in a state where we can do a release 1165276972 M * daniel_hozac bronson: the feature matrix would probably be better. 1165276982 M * daniel_hozac Bertl: ok, that's what i thought too. 1165276986 M * Bertl actually I think we should release it as 2.6.19-vs2.1.1.3 or 4 1165277022 M * Bertl a fix for 2.0.x is still on my todo 1165277025 M * bronson daniel_hozac: good call; I didn't know that existed. I'll add a link. 1165277028 M * daniel_hozac i.e. an actual release to replace the current devel? sounds like a good idea to me. 1165277040 M * daniel_hozac bronson: there should be a link from the downloads area. 1165277063 M * bronson I was looking on http://linux-vserver.org/Welcome_to_Linux-VServer.org 1165277074 M * daniel_hozac ah, the link wasn't updated since it moved to feature matrix. 1165277088 M * daniel_hozac bronson: well, that's just a quick overview. 1165277093 M * daniel_hozac Downloads is where the magic happens :) 1165277120 M * bronson True, but since the ChangeLogs were there, I figured that was the best I could do. 1165277122 M * bronson Glad to be wrong. :) 1165277302 M * daniel_hozac Bertl: so should i add anything now, or just wait for the release? 1165277566 M * Bertl lets give it a day, and we release something tomorrow 1165277573 M * daniel_hozac okay. 1165277601 M * daniel_hozac now, with the space hack, older utils should work with it, right? 1165277611 M * Bertl yes, I'd say so 1165277637 M * daniel_hozac but i should probably release 0.30.212 anyway. 1165277649 M * Bertl and if we add support for a set_mask, the hack becomes less hackish 1165277672 M * Bertl but still a legacy/compatibility thing 1165277679 M * daniel_hozac right. 1165277704 M * Bertl okay, so I'd suggest I add the mask/vci info tonight 1165277705 M * daniel_hozac hmm, i guess i should look in to using VCMD_ctx_create_v1 before releasing 0.30.212. 1165277728 M * Bertl and do a t5? release, so you can test that one tomorrow 1165277747 M * daniel_hozac ok, sounds like a plan. 1165277749 M * Bertl when we know that works for 0.30.212, we'll do the final release 1165277765 M * Bertl if you encounter 'new' issues, we fix them up first 1165277852 J * EXPERTUL Dj_script@85.120.18.10 1165277855 P * EXPERTUL 1165278163 M * Bertl hmm .. Dj_script? :) 1165278189 Q * meandtheshell Quit: Leaving. 1165280037 Q * derjohn Ping timeout: 480 seconds 1165280077 J * derjohn ~derjohn@dslb-084-058-208-080.pools.arcor-ip.net 1165280262 P * undefined 1165280985 J * mrrm_ ~urkel@tor-irc.dnsbl.oftc.net 1165281008 Q * mrrm Remote host closed the connection 1165281180 M * Bertl Hollow: what's the thing with the Talk:Mailman being hit by the spam every day? is that something special? can we simply 'block' that page somehow? what am I missing here ... 1165281205 M * daniel_hozac isn't it blocked now? Hollow protected that page, no? 1165281327 M * Bertl I have a wiki mail from 4th of december with spam 1165281390 M * daniel_hozac yeah, it was protected yesterday at 17:24. 1165281879 M * Bertl okay, good 1165281893 M * Bertl any clue why this specific page is a permanent target? 1165281905 J * s0undt3ch_ ~s0undt3ch@bl4-56-64.dsl.telepac.pt 1165281911 J * _dmax ~semaj@81.193.56.64 1165281912 M * daniel_hozac no idea... seems like a very strange one to target. 1165282251 Q * dmax Ping timeout: 480 seconds 1165282257 N * _dmax dmax 1165282322 Q * s0undt3ch Ping timeout: 480 seconds 1165282322 N * s0undt3ch_ s0undt3ch 1165282767 Q * RichyF Quit: ( www.nnscript.de :: NoNameScript 3.72 :: www.XLhost.de ) 1165285155 J * Aiken_ ~james@tooax6-127.dialup.optusnet.com.au 1165285385 Q * DreamerC_ Quit: leaving 1165285403 J * DreamerC ~dreamerc@59-115-48-84.dynamic.hinet.net 1165285481 Q * Aiken Ping timeout: 480 seconds 1165287463 Q * comfrey Ping timeout: 480 seconds 1165287800 J * comfrey ~comfrey@201.243.176.219 1165288998 Q * s0undt3ch Ping timeout: 480 seconds 1165289001 Q * dmax Ping timeout: 480 seconds 1165289873 Q * comfrey Ping timeout: 480 seconds 1165289981 J * HobGoblin ~jaaa@sr-fw1.router.uk.clara.net 1165290044 Q * FireEgl Quit: Leaving.. 1165290330 J * s0undt3ch ~s0undt3ch@bl4-56-58.dsl.telepac.pt 1165290341 J * dmax ~semaj@81.193.56.58 1165290403 Q * goblin Ping timeout: 480 seconds 1165290415 Q * bronson Ping timeout: 480 seconds 1165292225 J * oe\MmtBIS ~hollow@styx.xnull.de 1165292225 Q * Hollow Read error: Connection reset by peer 1165292282 N * oe\MmtBIS Hollow 1165294324 J * m4z_ m4z@bastard-operator.from-hell.net 1165294324 Q * m4z Read error: Connection reset by peer 1165294329 N * m4z_ m4z 1165294761 J * BKFpKJW^Y ~hollow@styx.xnull.de 1165294761 Q * Hollow Read error: Connection reset by peer 1165294821 N * BKFpKJW^Y Hollow 1165295031 Q * Hollow Remote host closed the connection 1165295192 J * Hollow ~hollow@styx.xnull.de 1165295556 J * FireEgl proteus@adsl-61-147-76.bhm.bellsouth.net 1165296269 J * bronson ~bronson@adsl-75-36-147-248.dsl.pltn13.sbcglobal.net 1165296661 Q * brc_ Ping timeout: 480 seconds 1165296667 J * brc_ ~bruce@201.19.175.199 1165298146 J * m4z_ m4z@bastard-operator.from-hell.net 1165298146 Q * m4z Read error: Connection reset by peer 1165298151 N * m4z_ m4z 1165299328 Q * m4z Ping timeout: 480 seconds 1165300694 J * SNy_ 3772bcc062@bmx-chemnitz.de 1165300742 Q * SNy Read error: Connection reset by peer 1165300781 J * mrrm ~urkel@tor-irc.dnsbl.oftc.net 1165301185 Q * mrrm_ Ping timeout: 480 seconds 1165301417 Q * SNy_ Remote host closed the connection 1165301426 J * SNy 07112d1051@bmx-chemnitz.de 1165301530 J * m4z m4z@bastard-operator.from-hell.net 1165303529 M * Bertl okay, off to bed now .. have a good one everyone! 1165303536 N * Bertl Bertl_zZ 1165304646 J * DavidS ~david@chello062178045213.16.11.tuwien.teleweb.at 1165304871 Q * SNy lithium.oftc.net arion.oftc.net 1165304871 Q * DreamerC lithium.oftc.net arion.oftc.net 1165304871 Q * _cob lithium.oftc.net arion.oftc.net 1165304871 Q * thunder1 lithium.oftc.net arion.oftc.net 1165304871 Q * Wonka lithium.oftc.net arion.oftc.net 1165304871 Q * blues lithium.oftc.net arion.oftc.net 1165304871 Q * chaotika lithium.oftc.net arion.oftc.net 1165304871 Q * ag- lithium.oftc.net arion.oftc.net 1165304955 J * SNy d3f8ac7800@bmx-chemnitz.de 1165304971 J * thunder1 ~thu@tor-irc.dnsbl.oftc.net 1165304980 J * ag- ~ag@caladan.roxor.cx 1165304990 J * chaotika chaotika@ccc2.rbg.informatik.tu-darmstadt.de 1165305014 J * DreamerC ~dreamerc@59-115-48-84.dynamic.hinet.net 1165305014 J * _cob ~cob@pc-csa01.science.uva.nl 1165305014 J * Wonka produziert@chaos.in-kiel.de 1165305014 J * blues blues@blysk.ds.pg.gda.pl 1165309297 J * dna ~naucki@226-248-dsl.kielnet.net 1165310060 M * renihs hmm if i have alot load on the vhost itself (coming from a vserver) whats the best procedure to find out which one is generating it? 1165310068 M * renihs top in the actual vservers doesnt show anything 1165310386 Q * eGnarF Ping timeout: 480 seconds 1165310452 M * renihs anyhow, i once limited the cpu usage a vserver to lets say 50% but can rember exactly 1165310473 M * renihs i placed a few numbers in some limit file :), the flower page isnt conclusive for me in my current state of mind 1165310795 J * cdrx ~legoater@cap31-3-82-227-199-249.fbx.proxad.net 1165311476 J * meandtheshell ~markus@85-124-37-85.dynamic.xdsl-line.inode.at 1165311548 Q * thunder1 Ping timeout: 480 seconds 1165311572 J * thunder1 ~thu@tor-irc.dnsbl.oftc.net 1165311796 J * eGnarF ~bartek@bk.crystone.se 1165311906 Q * borgfish Ping timeout: 480 seconds 1165312521 J * alexb ~alex@DSL01.212.114.251.238.ip-pool.NEFkom.net 1165312530 M * alexb good morning 1165312568 M * renihs morning 1165312600 M * alexb i'm experiencing some problems on accessing usb-devices inside a guest 1165312678 M * alexb the bcapability SYS_RAWIO is set, the BCaps flag at /proc/virtual/$id/status changed after setting this flag. i also added /proc/bus/ to vprocunhide-files - but /proc/bus isn't visible in my guest... any ideas? 1165312707 M * alexb the idea behind is setting up an hbci-vserver ;) 1165312894 J * lilalinux ~plasma@dslb-084-058-208-080.pools.arcor-ip.net 1165312993 Q * mrrm Remote host closed the connection 1165313008 J * mrrm ~urkel@tor-irc.dnsbl.oftc.net 1165313066 Q * lilalinux Remote host closed the connection 1165313454 J * lilalinux ~plasma@dslb-084-058-208-080.pools.arcor-ip.net 1165316465 J * rgl ~Rui@84.90.8.72 1165316472 A * rgl waves 1165316808 M * doener alexb: hm, /proc/bus itself isn't visible? 1165316837 M * alexb doener, no, it doesn't simply exist 1165316854 M * doener hm... sec.. 1165316902 M * doener it's visible for me, after unhiding 1165317017 M * doener alexb: you did re-run vprocunhide after editing vprocunhide-files, right? 1165317034 M * alexb urgz 1165317048 J * Piet hiddenserv@tor.noreply.org 1165317057 M * alexb thanks doener, i think that's the point :) 1165317084 M * doener and you should also add /proc/bus/usb there, and on top of that you'll have to add the usbfs mount on that directory to the guest's fstab 1165317098 M * doener (the one in the configuration, not the one in the guest itself) 1165317109 M * alexb okay, thanks alot 1165317117 M * doener you're welcome 1165317776 Q * Piet Ping timeout: 480 seconds 1165319245 Q * thunder1 Remote host closed the connection 1165319280 J * thunder1 ~thu@tor-irc.dnsbl.oftc.net 1165320026 Q * ensc Killed (NickServ (GHOST command used by ensc_)) 1165320037 J * ensc ~irc-ensc@p54B4D8E3.dip.t-dialin.net 1165320446 Q * Aiken_ Ping timeout: 480 seconds 1165320560 Q * alexb Quit: Verlassend 1165322030 J * Piet hiddenserv@tor.noreply.org 1165323526 J * alexb ~alex@DSL01.212.114.251.238.ip-pool.NEFkom.net 1165323527 M * alexb re 1165323637 M * alexb doener, after adding '/proc/bus/usb/' to vprocunhide-files, vprocunhide tells me: http://nopaste.info/5641ed2697.html 1165324252 M * daniel_hozac and you didn't get that after adding /proc/bus/? 1165324291 M * daniel_hozac the thing with /proc/bus/usb is that it's a completely different filesystem. it doesn't support the hide/admin/watch flags at all. 1165324461 M * daniel_hozac http://archives.linux-vserver.org/200610/0054.html 1165324539 J * comfrey ~comfrey@201.243.176.219 1165324798 M * alexb daniel_hozac, /proc/bus/ is processed without any problems 1165324844 M * alexb thanks, i'll try it 1165324965 M * alexb yeah, it works :) 1165326635 Q * cdrx Ping timeout: 480 seconds 1165327613 Q * michal` Ping timeout: 480 seconds 1165327987 J * michal` ~michal@www.rsbac.org 1165328015 Q * comfrey Ping timeout: 480 seconds 1165328366 Q * Piet Ping timeout: 480 seconds 1165328478 J * Piet hiddenserv@tor.noreply.org 1165328543 Q * Piet Remote host closed the connection 1165328597 J * Piet hiddenserv@tor.noreply.org 1165328810 J * cdrx ~legoater@cimai.net4.nerim.net 1165331129 Q * eyck Read error: Operation timed out 1165331653 J * eyck ~eyck@nat-old.nowanet.pl 1165334969 J * kir ~kir@swsoft-mipt-nat.sw.ru 1165335430 J * sebastian ~info@pD957D7C8.dip.t-dialin.net 1165336301 J * stefani ~stefani@tsipoor.banerian.org 1165336480 Q * kevinp Quit: Leaving 1165338056 N * Bertl_zZ Bertl 1165338060 M * Bertl morning folks! 1165338068 M * daniel_hozac morning Bertl! 1165338098 M * Bertl daniel_hozac: I just found out that enter_namespace did always take an argument? 1165338131 M * Bertl not that it was used or defined yet :) 1165338145 M * Bertl do the tools pass anything there? or just ignore it? 1165338154 M * daniel_hozac the data argument? 1165338160 M * Bertl yep 1165338177 M * daniel_hozac it's 0. 1165338225 M * Bertl hmm, shall we simply make that 'work' or would you prefer a new cmd revision with a meaningful argument? 1165338252 M * Bertl (I prepared the latter, but it's up to you) 1165338270 M * daniel_hozac i guess a new command would be better. 1165338278 Q * DavidS Quit: Leaving. 1165338420 M * Bertl daniel_hozac: do you mind if I rename the commands to space instead of namespace? 1165338437 M * daniel_hozac no, not at all. 1165338441 M * daniel_hozac makes more sense now. 1165338493 M * Bertl maybe pspace? like process space? 1165338502 M * Bertl or is that too confusing? 1165338522 M * daniel_hozac i guess it will be, when pid spaces come around 1165338538 M * Bertl okay nspace? or just space? 1165338599 M * daniel_hozac i think i'd prefer just space. 1165338611 M * daniel_hozac but i don't feel strongly about it. 1165338621 M * daniel_hozac so take whichever one you feel the most comfortable with :) 1165340457 M * bronson I think I'm settling on vs2.1.1-grsec2.1.9... in your guys' experience, does it work reasonably well? 1165340500 M * daniel_hozac you'd want something based on 2.1.1.3, at least. 1165340513 M * bronson So give up grsec? 1165340535 M * Bertl or kick harry around a little ... 1165340548 M * bronson :) OK, I can live with that. 1165340576 M * daniel_hozac what is it that you need grsec for? 1165340585 M * bronson Peace of mind, nothing more. 1165340611 M * Bertl we should prepare a 'peace of mind' patch for that :) 1165340693 J * bonbons ~bonbons@83.222.39.117 1165340695 M * bronson This machine will be running in a DMZ so I figure grsec couldn't hurt... But I haven't looked into it very deeply yet 1165340704 Q * cdrx Ping timeout: 480 seconds 1165340759 M * bronson What order does Harry go in... apply vserver on top of kernel+grsec or apply grsec on top of kernel+vserver? 1165340785 M * bronson harry: are you around? 1165340972 Q * kir Remote host closed the connection 1165341934 M * Bertl daniel_hozac: http://vserver.13thfloor.at/Experimental/patch-2.6.19-vs2.1.x-t5.diff 1165341953 J * shedi ~siggi@inferno.lhi.is 1165341954 M * Bertl I probably forgot something, but it compiles and passes the basic tests 1165341969 M * Bertl have to leave now ... will be back in a few hours ... 1165341976 N * Bertl Bertl_oO 1165342009 M * daniel_hozac okay, i'll test it and adapt the utils. 1165342196 Q * rgl Ping timeout: 480 seconds 1165342525 J * rgl ~Rui@84.90.8.72 1165342854 Q * bronson Ping timeout: 480 seconds 1165342974 M * cehteh note: Linuxtag 2007 likely in Berlin 1165343834 Q * alexb Quit: Verlassend 1165344071 M * SNy Berlin? 1165344075 M * SNy Uh. 1165344089 M * SNy What happened to Wiesbaden? 1165344099 M * SNy Or Karlsruhe, for that matter. 1165344101 M * SNy :/ 1165344119 M * SNy I quite enjoyed the trips to Karlsruhe. 1165344703 M * harry bronson? 1165344794 Q * Piet Remote host closed the connection 1165344878 M * harry is there some place where i can find an interdiff for 2.1.1.x patches? 1165344985 J * Piet hiddenserv@tor.noreply.org 1165345008 J * comfrey ~comfrey@201.243.176.219 1165345013 M * daniel_hozac not that i'm aware of. 1165345026 M * harry kinda sucky 1165345067 J * derjohn2 ~aj@dslb-084-058-208-080.pools.arcor-ip.net 1165345072 M * daniel_hozac that's what you get when you don't use vanilla :) 1165345097 M * harry just because you guys don't like grsec 1165345108 M * harry it has some good features, you know... 1165345119 M * harry things that normal vserver stuff doesnt protect you agains 1165345119 M * harry t 1165345134 M * harry randomisations, the whole pax stuff 1165345136 M * doener rather because you don't need an interdiff with vanilla and it takes just a few seconds to create one yourself 1165345163 M * harry you can't interdiff between different kernel branches 1165345163 M * daniel_hozac actually, i get that just fine from Fedora ;) 1165345181 M * harry you get what from fedora? 1165345193 M * daniel_hozac randomization etc. 1165345196 M * harry how? 1165345201 M * harry selinux? 1165345205 M * daniel_hozac no. 1165345208 M * harry pax? 1165345211 M * daniel_hozac no. 1165345213 M * doener execshield? 1165345215 M * daniel_hozac yep 1165345218 M * harry haha 1165345235 M * harry it's been a while since i last got that... 1165345239 M * harry is it any good now? 1165345248 M * harry (iirc it was kinda bullocks a few months ago) 1165345306 M * daniel_hozac it's the same it has been for years... 1165345318 M * harry hmm... so not all that useful ; 1165345320 M * harry :) 1165345336 M * daniel_hozac if you call grsec not useful, sure :) 1165345337 M * harry anyway... just look at the pax code... it's brilliant :) 1165345369 M * harry grsec part might be a bit off... but pax code is definately fine piece of coding 1165345373 A * doener .oO( s/i//3 ... Paula Bean! ) 1165345473 M * doener (if you have no clue wtf I'm thinking about: http://thedailywtf.com/forums/thread/93776.aspx ) 1165345723 Q * lilalinux Remote host closed the connection 1165345913 J * cdrx ~legoater@82.227.199.249 1165345997 Q * Piet Ping timeout: 480 seconds 1165346171 J * comfrey_ ~comfrey@201.243.176.219 1165346177 Q * comfrey_ 1165346305 J * Piet hiddenserv@tor.noreply.org 1165346755 J * kir_home ~kir@213.152.157.70 1165346994 Q * sid3windr Ping timeout: 480 seconds 1165347194 J * sid3windr luser@bastard-operator.from-hell.be 1165347225 J * bronson ~bronson@66.160.177.201 1165347464 M * bronson harry: are you about? 1165348126 Q * dmax Ping timeout: 480 seconds 1165348228 Q * s0undt3ch Ping timeout: 480 seconds 1165348465 M * harry bronson: yews 1165348469 M * harry yes\ 1165348551 M * bronson harry: when you create the vserver+grsecurity patches, do you apply grsec over kernel+vserver, or do you apply vserver over kernel+grsec? 1165348586 M * harry first grsec, then vserver 1165348587 M * bronson I'm tempted to play around with making a modern vserver+grsec patch 1165348596 M * bronson (mostly to learn more about the internals) 1165348600 M * harry if you want, i'll do that tomorrow : 1165348611 M * harry there are some caveats... so watch out ;) 1165348617 M * bronson Well, I just got a bunch dumped on my lap at work so I probably won't beat you to it... 1165348634 Q * kir_home Quit: Ухожу я от вас 1165348664 M * bronson I'd like to play with it though. 1165348667 M * bronson Any warnings? :0 1165348668 Q * comfrey Ping timeout: 480 seconds 1165348670 M * bronson I mean, :) 1165348684 M * harry well... make sure it's all correct 1165348692 M * harry you need to put some includes in some grsec files 1165348706 M * harry some logic is really twisted... but if you think long and hard, you'll get it right : 1165348706 M * daniel_hozac why? 1165348709 M * harry :) 1165348728 M * harry daniel_hozac: grsec stuff... no time to show you why in what code... 1165348752 M * daniel_hozac we shouldn't have any includes that are required without them being directly used anymore. 1165348784 M * harry daniel_hozac: i gotta go now 1165348790 M * harry i'll look into it tomorrow 1165348794 M * harry see if it's still needed 1165348828 M * harry bronson: i think the easiest way is: use my 2.6.18.2 patch on the latest (2.6.18.5 ?) 1165348839 M * harry then make an interdiff for 2.1.1 stuff... apply that 1165348852 Q * Piet Remote host closed the connection 1165348853 M * bronson harry: I hope I have time. Thanks! 1165348871 M * harry if you run into probs, just let me know 1165348876 M * harry i'll see if i can help 1165348879 M * bronson will do 1165348893 M * bronson Nobody here uses git? 1165348904 M * bronson Seems like it would make the patch slinging easier...? 1165348978 M * harry yeah, it would :) 1165348981 A * harry is a fan! 1165348984 M * harry but... gotta run now! 1165348986 M * harry beer is waiting! 1165349017 J * Piet hiddenserv@tor.noreply.org 1165349071 Q * gerrit Ping timeout: 480 seconds 1165350034 M * daniel_hozac Bertl_oO: looks like the VCI-bit for spaces is missing. 1165351662 N * HobGoblin goblin 1165352005 M * daniel_hozac Bertl_oO: and how stable are the values? will they ever change? 1165352529 Q * bronson Quit: Ex-Chat 1165352820 M * jpachec does anyone here know how to create a berkeley db? 1165353136 Q * Piet Remote host closed the connection 1165353239 J * Piet hiddenserv@tor.noreply.org 1165353869 J * Aiken ~james@tooax6-155.dialup.optusnet.com.au 1165353953 Q * derjohn Ping timeout: 480 seconds 1165354042 J * derjohn ~derjohn@dslb-084-058-208-080.pools.arcor-ip.net 1165354781 J * marcfiu ~mef@aegis.CS.Princeton.EDU 1165354923 J * yarihm ~yarihm@84-75-123-221.dclient.hispeed.ch 1165354990 J * Johnnie ~jdlewis@jdlewis.org 1165355049 J * DavidS ~david@chello062178045213.16.11.tuwien.teleweb.at 1165355224 J * coocoon ~coocoon@dslb-088-065-238-137.pools.arcor-ip.net 1165355313 J * dmax ~semaj@81.193.59.160 1165355364 J * s0undt3ch ~s0undt3ch@81.193.59.160 1165355371 Q * coocoon 1165355390 J * coocoon ~coocoon@dslb-088-065-238-137.pools.arcor-ip.net 1165355530 Q * bonbons Quit: Leaving 1165356959 Q * mire Quit: Leaving 1165357226 J * mire ~mire@141-166-222-85.adsl.verat.net 1165357483 J * bronson ~bronson@66.160.177.204 1165358006 Q * derjohn Ping timeout: 480 seconds 1165358829 Q * cdrx Ping timeout: 480 seconds 1165358830 Q * Johnnie Remote host closed the connection 1165359459 J * Johnnie ~jdlewis@jdlewis.org 1165359896 N * Bertl_oO Bertl 1165359900 M * Bertl back now ... 1165359945 M * Bertl daniel_hozac: yeah, I forgot that one, and I probably have to rework the set too ... 1165359957 M * Bertl daniel_hozac: what values are you referring to? 1165359966 M * daniel_hozac the VCI values. 1165360009 M * Bertl ah, well, I don't intend to reuse or change them without a really good reason 1165360026 M * daniel_hozac ok. 1165360042 M * Bertl but if you are paranoid, you can make that VCI version + flags 1165360062 P * coocoon So Long, and Thanks for All the Fish! 1165360086 M * daniel_hozac well, i think the flags should suffice. 1165360101 M * Bertl note, that we had a change in the flags at the beginning 1165360123 M * Bertl btw, I plan to up the vci version for 2.6.19 1165360161 M * daniel_hozac makes sense. 1165360206 M * Bertl does the interface work for you? 1165360268 M * daniel_hozac well, i'm still working on the changes required, but i think it should work. 1165360327 Q * FireEgl Quit: Leaving.. 1165360332 P * marcfiu 1165360414 M * Bertl okay, I made the mask 64 bit, although unshare/clone just use 32 bit, because I think it might not be enough :) 1165360434 M * daniel_hozac yeah, makes sense. 1165360439 M * daniel_hozac btw, why is CLONE_FS in there? 1165360479 M * Bertl well, it is handled like a namespace from the kernel side code, I wondered why it wasn't part of the nsproxy ... 1165360493 M * Bertl s/wasn't/isn't 1165360518 M * Bertl at least we take special care to switch the fs struct on enter too 1165360541 M * daniel_hozac hmm, well, reading the clone man page, it doesn't seem like the sort of flag we'd want to use. 1165360589 M * Bertl well, that one has to be considered 'negated' in clone() 1165360601 M * daniel_hozac yeah. 1165360625 M * Bertl probably the unshare manpage is more relevant 1165360638 M * daniel_hozac i don't have one for unshare ;) 1165360640 M * Bertl (or better would be :) 1165360712 M * Bertl unshare was introduced in 2.6.15/16 with the following 'features' 1165360743 M * Bertl Patch implements unsharing of filesystem information 1165360743 M * Bertl Patch implements unsharing of namespace 1165360743 M * Bertl Patch implements unsharing of vm 1165360744 M * Bertl Patch implements unsharing of files 1165360775 M * Bertl for the 'enter' we 'switched' the namespace and fs info up to now 1165360803 M * Bertl i.e. if you use the unshare() call isntead of clone(), the mask is probably correct 1165360823 M * Bertl (for clone, you have to invert the fs bit) 1165360836 M * daniel_hozac right... 1165361356 Q * yarihm Quit: Leaving 1165362321 Q * rgl Quit: Fui embora 1165362822 P * stefani I'm Parting (the water) 1165362853 Q * DavidS Quit: Leaving. 1165362853 Q * dna Quit: Verlassend 1165362885 Q * meandtheshell Quit: Leaving.