File tree Expand file tree Collapse file tree 1 file changed +12
-3
lines changed
Expand file tree Collapse file tree 1 file changed +12
-3
lines changed Original file line number Diff line number Diff line change @@ -129,9 +129,18 @@ else
129129 ! $BWRAP --assert-userns-disabled --dev-bind / / -- true
130130 $BWRAP --unshare-user --disable-userns --dev-bind / / -- true
131131 ! $BWRAP --unshare-user --disable-userns --dev-bind / / -- $BWRAP --dev-bind / / -- true
132- $BWRAP --unshare-user --disable-userns --dev-bind / / -- sh -c " echo 2 > /proc/sys/user/max_user_namespaces || true; ! $BWRAP --dev-bind / / -- true"
133- $BWRAP --unshare-user --disable-userns --dev-bind / / -- sh -c " echo 100 > /proc/sys/user/max_user_namespaces || true; ! $BWRAP --dev-bind / / -- true"
134- $BWRAP --unshare-user --disable-userns --dev-bind / / -- sh -c " ! $BWRAP --dev-bind / / --assert-userns-disabled -- true"
132+ $BWRAP --unshare-user --disable-userns --dev-bind / / -- sh -c " echo 2 > /proc/sys/user/max_user_namespaces || true; ! $BWRAP --unshare-user --dev-bind / / -- true"
133+ $BWRAP --unshare-user --disable-userns --dev-bind / / -- sh -c " echo 100 > /proc/sys/user/max_user_namespaces || true; ! $BWRAP --unshare-user --dev-bind / / -- true"
134+ $BWRAP --unshare-user --disable-userns --dev-bind / / -- sh -c " ! $BWRAP --unshare-user --dev-bind / / --assert-userns-disabled -- true"
135+
136+ $BWRAP_RECURSE --dev-bind / / -- true
137+ ! $BWRAP_RECURSE --assert-userns-disabled --dev-bind / / -- true
138+ $BWRAP_RECURSE --unshare-user --disable-userns --dev-bind / / -- true
139+ ! $BWRAP_RECURSE --unshare-user --disable-userns --dev-bind / / -- /proc/self/exe --dev-bind / / -- true
140+ $BWRAP_RECURSE --unshare-user --disable-userns --dev-bind / / -- sh -c " echo 2 > /proc/sys/user/max_user_namespaces || true; ! $BWRAP --unshare-user --dev-bind / / -- true"
141+ $BWRAP_RECURSE --unshare-user --disable-userns --dev-bind / / -- sh -c " echo 100 > /proc/sys/user/max_user_namespaces || true; ! $BWRAP --unshare-user --dev-bind / / -- true"
142+ $BWRAP_RECURSE --unshare-user --disable-userns --dev-bind / / -- sh -c " ! $BWRAP --unshare-user --dev-bind / / --assert-userns-disabled -- true"
143+
135144 echo " ok - can disable nested userns"
136145fi
137146
You can’t perform that action at this time.
0 commit comments