Subject: Re: Non-root users mounting a file system?
To: Antti Kantee <pooka@cs.hut.fi>
From: Paul Goyette <paul@whooppee.com>
List: current-users
Date: 02/20/2007 14:17:27
On Wed, 21 Feb 2007, Antti Kantee wrote:

>> 	vfs.generic.usermount = 1
>> 	quicky:paul {106} mount /dev/cgd0a /pics
>> 	mount_ffs: /dev/cgd0a on /pics: Operation not permitted
>> 	quicky:paul {107}
>
> Current you need to explicitly tell the kernel you want a nosuid/nodev
> mount, i.e. mount -o nosuid,nodev /dev/cgd0a /pics

Hmmm, looks like that's not enough:

quicky:paul {1387} sysctl vfs.generic.usermount
vfs.generic.usermount = 1
quicky:paul {1388} mount -o nosuid,nodev /dev/cgd0a /pics
mount_ffs: /dev/cgd0a on /pics: Operation not permitted
quicky:paul {1389}


----------------------------------------------------------------------
|   Paul Goyette   | PGP DSS Key fingerprint: |  E-mail addresses:   |
| Network Engineer | FA29 0E3B 35AF E8AE 6651 |  paul@whooppee.com   |
|                  | 0786 F758 55DE 53BA 7731 | pgoyette@juniper.net |
----------------------------------------------------------------------