Uploaded image for project: 'Mesos'
  1. Mesos
  2. MESOS-5410

Support cgroup namespace in unified container

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Reviewable
    • Major
    • Resolution: Unresolved
    • None
    • None
    • containerization
    • None

    Description

      In Linux 4.6 kernel, a new namespace (cgroup namespace) was introduced to make a process can be created in its own cgroup namespace so that the global cgroup hierarchy will not be leaked to the process. See the following link for more details about this namespace:
      http://man7.org/linux/man-pages/man7/cgroup_namespaces.7.html

      We need to support this namespace in unified container to provide better isolation for the containers created by Mesos.

      Attachments

        Issue Links

          Activity

            People

              haosdent@gmail.com haosdent
              qianzhang Qian Zhang
              Jie Yu Jie Yu
              Votes:
              0 Vote for this issue
              Watchers:
              8 Start watching this issue

              Dates

                Created:
                Updated: