Hi,
On 2014-01-28 10:41:49 -0500, Paul Morie wrote:
> The challenge we have in openshift is that we have multiple users on a
> single node who all want to bind to the same port. To deal with this,
> we forbid the users from binding to 127.0.0.1 using selinux and
> allocate IPs for them to bind to.
Uhm. What about using network namespaces?
To me this really sounds like tackling things from the wrong
end. Instead of fixing the infrastructure once this way you need to
adapt various pieces of software in odd ways.
Greetings,
Andres Freund
--
Andres Freund http://www.2ndQuadrant.com/
PostgreSQL Development, 24x7 Support, Training & Services