Uploaded image for project: 'Mesos'
  1. Mesos
  2. MESOS-5410

Support cgroup namespace in unified container

    XMLWordPrintableJSON

    Details

    • Type: Improvement
    • Status: Reviewable
    • Priority: Major
    • Resolution: Unresolved
    • Affects Version/s: None
    • Fix Version/s: None
    • Component/s: containerization
    • Labels:
      None

      Description

      In Linux 4.6 kernel, a new namespace (cgroup namespace) was introduced to make a process can be created in its own cgroup namespace so that the global cgroup hierarchy will not be leaked to the process. See the following link for more details about this namespace:
      http://man7.org/linux/man-pages/man7/cgroup_namespaces.7.html

      We need to support this namespace in unified container to provide better isolation for the containers created by Mesos.

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                haosdent@gmail.com haosdent
                Reporter:
                qianzhang Qian Zhang
                Shepherd:
                Jie Yu
              • Votes:
                0 Vote for this issue
                Watchers:
                10 Start watching this issue

                Dates

                • Created:
                  Updated: