OPEN_TREE_NAMESPACE To Provide A Security & Performance Win For Dealing With Containers
([Linux Kernel] 19 January 02:44 PM EST
OPEN_TREE_NAMESPACE)
A new feature expected to be merged for the upcoming Linux 7.0 kernel cycle is adding an OPEN_TREE_NAMESPACE flag for the open_tree() system call. This OPEN_TREE_NAMESPACE option can provide a nice performance win with added security benefits if you are dealing a lot with containerized workloads on Linux.