Re: [Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
Thanks for the confirmation. A note for anyone else who runs into this - you will unfortunately need to actually restart lxcfs, or reboot the host, for the fix to take. -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
I have confirmed that the fix for this indeed does fix my issue. Thanks for your prompt attention! -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
** Changed in: lxc (Ubuntu) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
This bug was fixed in the package lxcfs - 2.0.0~rc8-0ubuntu1 --- lxcfs (2.0.0~rc8-0ubuntu1) xenial; urgency=medium * Merge 2.0.0.rc8, which implements access(2) needed by lxc. (LP: #1560120) -- Serge Hallyn Mon, 21 Mar 2016 21:08:18 -0700 ** Changed in: lxcfs (Ubuntu) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
Christopher, thanks for reporting this. I've pushed the fix, but as we're now in final freeze it may be delayed for approval. ** Changed in: lxcfs (Ubuntu) Importance: Undecided => High ** Changed in: lxcfs (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
The proposed fix for this is https://github.com/lxc/lxcfs/pull/102 -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
I believe this is due to lxcfs not implementing access(2). ** Also affects: lxcfs (Ubuntu) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
Confirmed, i can reproduce. Now why. ** Changed in: lxc (Ubuntu) Status: New => Triaged -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
** Changed in: lxc (Ubuntu) Importance: Undecided => High -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1560120] Re: Unprivileged nested container will not start inside a privileged container
Hm, lxc-start 20160321163436.552 ERROR lxc_utils - utils.c:mkdir_p:253 - Permission denied - failed to create directory '/sys/fs/cgroup/blkio/lxc /libertine-smoke-test/lxc/' This is odd, if that was not writeable then cgfsng should not have stored it as a writeable hierarchy. Just to make sure, can you show the container configuration for both containers? -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1560120 Title: Unprivileged nested container will not start inside a privileged container To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1560120/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs