diff options
author | Pavel Emelyanov <xemul@openvz.org> | 2007-12-08 03:09:24 -0500 |
---|---|---|
committer | David S. Miller <davem@davemloft.net> | 2008-01-28 17:56:56 -0500 |
commit | 024626e36d75fc8c6e32d50d4c68bfc3b8df5fdf (patch) | |
tree | ada6c8c215a5c4fa57e9e34f3b139609b95b2c5f /include | |
parent | cbbb90e68cd073b8d63b491166066e347902b7e9 (diff) |
[NET] sysctl: make the sys.net.core sysctls per-namespace
Making them per-namespace is required for the following
two reasons:
First, some ctl values have a per-namespace meaning.
Second, making them writable from the sub-namespace
is an isolation hole.
So I introduce the pernet operations to create these
tables. For init_net I use the existing statically
declared tables, for sub-namespace they are duplicated
and the write bits are removed from the mode.
Signed-off-by: Pavel Emelyanov <xemul@openvz.org>
Signed-off-by: David S. Miller <davem@davemloft.net>
Diffstat (limited to 'include')
-rw-r--r-- | include/net/net_namespace.h | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/include/net/net_namespace.h b/include/net/net_namespace.h index f97b2a4469ae..d5936115d972 100644 --- a/include/net/net_namespace.h +++ b/include/net/net_namespace.h | |||
@@ -37,6 +37,9 @@ struct net { | |||
37 | 37 | ||
38 | struct sock *rtnl; /* rtnetlink socket */ | 38 | struct sock *rtnl; /* rtnetlink socket */ |
39 | 39 | ||
40 | /* core sysctls */ | ||
41 | struct ctl_table_header *sysctl_core_hdr; | ||
42 | |||
40 | /* List of all packet sockets. */ | 43 | /* List of all packet sockets. */ |
41 | rwlock_t packet_sklist_lock; | 44 | rwlock_t packet_sklist_lock; |
42 | struct hlist_head packet_sklist; | 45 | struct hlist_head packet_sklist; |