[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Re: [libvirt] LXC: making the private root filesystem more secure



DV> I just checked the libcgroup heaer file available under Fedora 9
DV> and I'm a bit afraid of the dependancy. They expose a lot of
DV> structure, some clearly incomplete, which means liking to it in its
DV> current state may turn into a problematic dependency.

I've become increasingly concerned about the likelihood of converging on
something stable that will work for libvirt in this area.  I hate to
ignore an abstraction layer that may help reduce the amount of knowledge
of cgroups that has to be present in libvirt.  However, I'm not sure
that libcgroup is really going to provide such a layer, and thus would
(as you put it) become nothing but a problematic dependency.

Perhaps it makes the most sense to implement a bit of cgroup support
directly into libvirt to satisfy our current needs while we wait to see
if libcgroup matures?

-- 
Dan Smith
IBM Linux Technology Center
Open Hypervisor Team
email: danms us ibm com

Attachment: pgp3WGUWx04x3.pgp
Description: PGP signature


[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]