[Nottingham] Read-only prefix command or command wrapper

Duncan Fyfe djf at star.le.ac.uk
Fri Sep 26 07:02:54 UTC 2008


On Thu, 2008-09-25 at 16:14 +0100, Roger Light wrote:
> On Thu, Sep 25, 2008 at 02:01:08PM +0100, Chris Burton wrote:
> > > rofs is a read only fuse filesystem from
> > > http://mattwork.potsdam.edu/projects/wiki/index.php/Rofs
> > 
> > You could also bind mount it ro (not sure what version of kernel you need to 
> > support ro though).
> 
> Oh, good point. I *cough* forgot *cough* that we've got ro bind
> mounts now :) That's been available since 2.6.26:
> http://kernelnewbies.org/Linux_2_6_26
> 
> I guess that means that most people won't have it quite yet.

Previous kernels would accept the ro bind mount option but quietly
discard it if there directory were rw from elsewhere, thus leaving the
directory (quietly) rw.   Make sure the directory genuinely is mounted
ro before you trust it to a production environment.

Have fun,
Duncan




More information about the Nottingham mailing list