Re: LXC unprivileged containers

2015-05-04 Thread Darren Baginski
03.05.2015, 12:50, "Jonathan Dowland" : > On Sun, May 03, 2015 at 09:44:45AM +0300, Johannes Graumann wrote: >>  PROMPT> sudo echo 1 > /sys/fs/cgroup/cpuset/cgroup.clone_children >>  PROMPT> sudo echo 1 > /proc/sys/kernel/unprivileged_userns_clone > > I think redirections don't work for privilege

Re: LXC unprivileged containers

2015-05-04 Thread Darren Baginski
Some progress: lxcuser@lxcbox$ cat /sys/fs/cgroup/cpuset/cgroup.clone_children 1 lxcuser@lxcbox$ cat /proc/sys/kernel/unprivileged_userns_clone 1 lxcuser@lxcbox$ lxc-create --name p1 --template download Setting up the GPG keyring Downloading the image index --- You just created a Debian contai

Re: LXC unprivileged containers

2015-05-03 Thread Jonathan Dowland
On Sun, May 03, 2015 at 09:44:45AM +0300, Johannes Graumann wrote: > PROMPT> sudo echo 1 > /sys/fs/cgroup/cpuset/cgroup.clone_children > PROMPT> sudo echo 1 > /proc/sys/kernel/unprivileged_userns_clone I think redirections don't work for privileged operations via sudo. Instead sudo sh -c 'echo

Re: LXC unprivileged containers

2015-05-02 Thread Johannes Graumann
Darren Baginski wrote: > Hello! > > > I'm trying to spawn unprivileged LXC containers as described here > http://www.flockport.com/lxc-using-unprivileged-containers/ , however > getting: > > lxc-create -n myvm -t debian -- -r jessie > unshare: Operation not permitted > read pipe: No such file

LXC unprivileged containers

2015-05-01 Thread Darren Baginski
Hello! I'm trying to spawn unprivileged LXC containers as described here http://www.flockport.com/lxc-using-unprivileged-containers/ , however getting: lxc-create -n myvm -t debian -- -r jessie unshare: Operation not permitted read pipe: No such file or directory lxc_container: lxccontainer.c: