On Fri, May 09, 2025 at 03:32:40PM +0200, Amir Goldstein wrote: > unshare userns in addition to mntns and verify that: > > 1. watching tmpfs mounted inside userns is allowed with any mark type > 2. watching orig root with filesystem mark type is not allowed > 3. watching mntns of orig userns is not allowed > 4. watching mntns in userns where fanotify_init was called is allowed > > mount events are only tested with the last case of mntns mark. > > Signed-off-by: Amir Goldstein <amir73il@xxxxxxxxx> > --- Reviewed-by: Christian Brauner <brauner@xxxxxxxxxx>