Re: [lxc-users] Use image file for unprivileged containers

2018-06-15 Thread Christian Brauner
On Fri, Jun 15, 2018 at 06:03:06PM +0200, Dr. Todor Dimitrov wrote: > >> but it will have to be idshifted before the start. > > So the id shifting will be also done automatically? Once or on each start? No, the id shifting is *not* done by LXC. Only the *mount*. > > What about the format of the

Re: [lxc-users] Use image file for unprivileged containers

2018-06-15 Thread Dr. Todor Dimitrov
>> but it will have to be idshifted before the start. So the id shifting will be also done automatically? Once or on each start? What about the format of the image file? Is there any documentation or samples on this? I assume a dd img with a single partition (e.g. ext4) should be OK? Thanks, To

Re: [lxc-users] Use image file for unprivileged containers

2018-06-15 Thread Christian Brauner
On Fri, Jun 15, 2018 at 05:02:50PM +0200, Dr. Todor Dimitrov wrote: > Hallo Christian, > > do I have to manually perform the loop mount? I thought this was done by the > LXC runtime. Yes, the mount is performed. If you have manually prepared an image you can do: lxc.rootfs.path = loop:/path/to/

Re: [lxc-users] Use image file for unprivileged containers

2018-06-15 Thread Dr. Todor Dimitrov
Hallo Christian, do I have to manually perform the loop mount? I thought this was done by the LXC runtime. What is actually meant by “image file” inside the documentation: “ lxc.rootfs.path - specify the root file system for the container. It can be an image file, a directory or a block device

Re: [lxc-users] Use image file for unprivileged containers

2018-06-15 Thread Christian Brauner
On Fri, Jun 15, 2018 at 10:28:34AM +0200, Dr. Todor Dimitrov wrote: > Hallo, > > is it possible to use an image file with “lxc.rootfs.path” for an > unprivileged container? If possible, is it necessary to have the > correct file ownerships within the image or are these automatically > adjusted on

Re: [lxc-users] Network instability with bridged nat and macvlan interfaces

2018-06-15 Thread Michel Jansens
Dear all, This is a follow up on my network instability problem. Last friday, I moved my containers on a second server (identical in all aspects) configured with bridged networking instead of macvlan. Since then not one packet lost or refused. It could be that our switches or router don’t react w

[lxc-users] Use image file for unprivileged containers

2018-06-15 Thread Dr. Todor Dimitrov
Hallo, is it possible to use an image file with “lxc.rootfs.path” for an unprivileged container? If possible, is it necessary to have the correct file ownerships within the image or are these automatically adjusted on start, e.g. on mount. Thanks in advance, Todor smime.p7s Description: S/MI