[Rpm-maint] [rpm-software-management/rpm] Add back support for NSS-based user/group resolution (PR #4085)

Panu Matilainen notifications at github.com
Thu Jan 15 11:22:50 UTC 2026


pmatilai left a comment (rpm-software-management/rpm#4085)

> Look up a user - glibc now continues to use the nsswitch file from the host (doesn't reload it from the chroot) so it will first try to look at the files and if the user isn't there, it loads whichever module is the next, and that happens inside the chroot

Oh. Right... Ugh :smile: 

I had always assumed it loads everything at once, but I doubt I've ever looked at what happens. And so if it actually does that, the only safe thing is to NEVER allow NSS in combination with chroot. Which would be a nice and simple cutoff point.

-- 
Reply to this email directly or view it on GitHub:
https://github.com/rpm-software-management/rpm/pull/4085#issuecomment-3754255849
You are receiving this because you are subscribed to this thread.

Message ID: <rpm-software-management/rpm/pull/4085/c3754255849 at github.com>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.rpm.org/pipermail/rpm-maint/attachments/20260115/25b46c91/attachment.htm>


More information about the Rpm-maint mailing list