Is it possible to achieve file system namespace isolation using
cgroups ? My main goal is to build a container with the capability of
limiting the view of a given process, similar to what chroot does.

Thank you very much in advance


