[systemd-bugs] [cgroup in lxc container] problem with non root user session in lxc container

Lennart Poettering lennart at poettering.net
Fri Feb 28 04:27:21 PST 2014


On Fri, 28.02.14 08:15, Jacek Pielaszkiewicz (j.pielaszkie at samsung.com) wrote:

> > My educated geuss here is that cgroupfs can't deal with user
> > namepsaces?
> > or something like that? Note that the systemd --user instance should
> > normally get write access to the cgroup subtree, so that it canmanage
> > its own subtree. That didn't work apparently...
> 
> My tests show that if the systemd could perform chown in the proper place of
> cgroup hierarchy, problem with user namespace can be resolved (as I
> mentioned in my first email).

Hmm? I can't parse this...

> 
> > 
> > >                 <filesystem type="ram">
> > >                         <source usage="1024" />
> > >                         <target dir="/tmp"/>
> > >                 </filesystem>
> > 
> > This appears unnecessary, as that's systemd's default anyway...
> 
> Without mount /tmp by container systemd reposts error:
> 
> [  OK  ] Reached target Slices.
> [  OK  ] Started Create static device nodes in /dev.
> [FAILED] Failed to mount Temporary Directory.
> See 'systemctl status tmp.mount' for details.
> [  OK  ] Reached target Local File Systems.
>          Starting Recreate Volatile Files and Directories...

Any idea why that fails? Anything in the logs?

Lennart

-- 
Lennart Poettering, Red Hat


More information about the systemd-bugs mailing list