Liron Levin
ce28fa45b0
Run privileged containers when userns are specified
...
Following #19995 and #17409 this PR enables skipping userns re-mapping
when creating a container (or when executing a command). Thus, enabling
privileged containers running side by side with userns remapped
containers.
The feature is enabled by specifying ```--userns:host```, which will not
remapped the user if userns are applied. If this flag is not specified,
the existing behavior (which blocks specific privileged operation)
remains.
Signed-off-by: Liron Levin <liron@twistlock.com >
2017-06-02 00:07:32 +00:00
..
2017-06-02 00:07:28 +00:00
2017-06-02 00:07:25 +00:00
2017-06-02 00:07:31 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:31 +00:00
2017-06-02 00:07:32 +00:00
2017-06-02 00:07:32 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:06:58 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:22 +00:00
2017-06-02 00:07:26 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:27 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:26 +00:00
2017-06-02 00:07:31 +00:00
2017-06-02 00:07:25 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:27 +00:00
2017-06-02 00:07:31 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:28 +00:00
2017-06-02 00:07:30 +00:00
2017-06-02 00:07:23 +00:00
2017-06-02 00:07:31 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:25 +00:00
2017-06-02 00:07:30 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:27 +00:00
2017-06-02 00:07:32 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:26 +00:00
2017-06-02 00:07:22 +00:00
2017-06-02 00:07:27 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:26 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:21 +00:00
2017-06-02 00:07:31 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:29 +00:00
2017-06-02 00:07:21 +00:00