Instead of joining and creating namespaces manually (though nseneter), let libcontainer do that. Similarly for mounts. TO properly do that, we need to patch the config we give for libcontainers in order to create the same execution environment that urunc creates for the monitor process.
Instead of joining and creating namespaces manually (though nseneter), let libcontainer do that. Similarly for mounts. TO properly do that, we need to patch the config we give for libcontainers in order to create the same execution environment that urunc creates for the monitor process.