PID's Mapping

Steve Grubb sgrubb at redhat.com
Wed Apr 20 12:33:12 UTC 2016


On Wednesday, April 20, 2016 10:06:38 AM Deepika Sundar wrote:
> Is there any way that can be suggested as to map PID's of namespace in
> global?

This is on the TODO list. We have been kicking around several ideas but have 
not come to a conclusion about what exactly needs to be done. The upshot of 
this is that basically containers have no support.

-Steve


> On Mon, Apr 18, 2016 at 8:47 PM, Paul Moore <paul at paul-moore.com> wrote:
> > Please ask your question on the mailing list so that everyone can benefit.
> > 
> > On Mon, Apr 18, 2016 at 1:34 AM, Deepika Sundar
> > 
> > <sundar.deepika18 at gmail.com> wrote:
> > > How it can be achieved ,Can I get any idea on this?
> > > 
> > > On Fri, Apr 15, 2016 at 4:12 AM, Paul Moore <paul at paul-moore.com> wrote:
> > >> On Wed, Apr 13, 2016 at 1:43 AM, sowndarya kumar
> > >> 
> > >> <sowndarya.nadar at gmail.com> wrote:
> > >> > Hi
> > >> > 
> > >> > Is there any way to map the PID's seen in the namespace application
> > 
> > with
> > 
> > >> > the
> > >> > PID's seen in global?
> > >> > If it can be done please provide the documentation or idea on how it
> > 
> > can
> > 
> > >> > be
> > >> > done.
> > >> 
> > >> In general the audit subsystem doesn't pay attention to namespaces,
> > >> all PIDs reported to userspace are reported with respect to the init
> > >> namespace.
> > >> 
> > >> --
> > >> paul moore
> > >> www.paul-moore.com
> > >> 
> > >> --
> > >> Linux-audit mailing list
> > >> Linux-audit at redhat.com
> > >> https://www.redhat.com/mailman/listinfo/linux-audit
> > 
> > --
> > paul moore
> > www.paul-moore.com




More information about the Linux-audit mailing list