Setup a pretty standard LXC container on bullseye, on a PVE7 server.

Every time logrotate run on LXC i got on LXC:

 Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed to set 
up mount namespacing: /run/systemd/unit-root/proc: Permission denied
 Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed at 
step NAMESPACE spawning /usr/sbin/logrotate: Permission denied
 Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Main process 
exited, code=exited, status=226/NAMESPACE
 Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Failed with result 
'exit-code'.
 Oct 28 00:00:59 vbaculaacpn1 systemd[1]: Failed to start Rotate log files.

And on PVE:

 Oct 28 00:00:59 beppe kernel: [280466.359176] audit: type=1400 
audit(1635372059.192:31): apparmor="DENIED" operation="mount" info="failed 
flags match" error=-13 profile="lxc-102_</var/lib/lxc>" 
name="/run/systemd/unit-root/proc/" pid=3059401 comm="(ogrotate)" fstype="proc" 
srcname="proc" flags="rw, nosuid, nodev, noexec"


?! I've tried to google around a bit, but found nothing.


Thanks.

-- 
  Alla fiera dell'est, per due soldi
  un topolino mio padre compro`                         (A. Branduardi)



_______________________________________________
pve-user mailing list
[email protected]
https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user

Reply via email to