Comment 10 for bug 1543367

Revision history for this message
Serge Hallyn (serge-hallyn) wrote :

Ok, this is happening because lxc, for privileged containers, bind-mounts /proc/sys and /proc/sys/net onto themselves. This prevents later unprivileged mounting of /proc.