Make our mounts private to our namespace
That way they don't end up in the host namespace in any case. Only the loop device we're allocating remains visible as there is currently no real separation between containers on loop device usage.
Showing
想要评论请 注册 或 登录