LinuxQuestions.org
Register a domain and help support LQ
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Virtualization and Cloud
User Name
Password
Linux - Virtualization and Cloud This forum is for the discussion of all topics relating to Linux Virtualization and Linux Cloud platforms. Xen, KVM, OpenVZ, VirtualBox, VMware, Linux-VServer and all other Linux Virtualization platforms are welcome. OpenStack, CloudStack, ownCloud, Cloud Foundry, Eucalyptus, Nimbus, OpenNebula and all other Linux Cloud platforms are welcome. Note that questions relating solely to non-Linux OS's should be asked in the General forum.

Notices

Reply
 
Search this Thread
Old 07-14-2014, 01:12 PM   #1
gauthig
LQ Newbie
 
Registered: Jun 2014
Posts: 6

Rep: Reputation: Disabled
LXC unprivileged container - operation no permitted


After following Stephane Graber's instructions and several others who all point to his work, I cannot get unprivileged containers to work.

When trying to start the container after creation, which had no errors, I get this set of errors:
----------------------------------
$ lxc-start -n test1
chown: changing ownership of `/dev/pts/11': Operation not permitted
lxc_container: Failed to chown /dev/pts/11
lxc_container: Failed to shift tty into container
lxc_container: failed to initialize the container
lxc_container: The container failed to start.
--------------------------------------

Steps
1. create new user
2. ensure new user has subuid/gid range in /etc/subuid /etc/subgid
3. add range to /etc/lxc/lxc-usernet
4. create ~/userid/.confg/lxc/default.conf
5. create lxc instance
$ lxc-create -t download -n test1 -- -d ubuntu -r trusty -a amd64
6. check instance with lxc-ls --fancy, all looks good
7. lxc-start -n test1
8. Get the errors as listed.

Ubuntu 14.04
LXC 1.0
Validated cgroups config
CONFIG_BLK_CGROUP=y
CONFIG_CGROUPS=y
CONFIG_DEVPTS_MULTIPLE_INSTANCES=y

BTW - lxc works great when createing and running multiple lxc servers from root

Any help would be great.
 
Old 07-14-2014, 11:35 PM   #2
chris.willing
LQ Newbie
 
Registered: Jun 2014
Posts: 24

Rep: Reputation: Disabled
Unprivileged usage was affected by kernel upgrade somewhere between 3.14.5 (which worked for me) and 3.14.12 which I recently tried (doing all the same stuff) but failed with same ownership messages as you. Fixes to accommodate whatever happened in the kernel have been included in new lxc release 1.0.5 (just out today from https://linuxcontainers.org/downloads/). I've tried it out and unprivileged container use is working again with no other changes needed.

chris
 
1 members found this post helpful.
Old 07-15-2014, 03:34 PM   #3
gauthig
LQ Newbie
 
Registered: Jun 2014
Posts: 6

Original Poster
Rep: Reputation: Disabled
Thank you Chris, upgrading to 1.0.5 worked.
 
  


Reply

Tags
lxc


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
lxc ... xf86OpenConsole: Cannot open virtual console 9 (Operation not permitted) masuch Linux - Desktop 1 06-07-2014 10:29 AM
How to use Local ISO for LXC Container? sunveer Linux - Software 0 10-04-2013 04:44 AM
LXC Container: sound Not working charlie101 Linux - Virtualization and Cloud 1 02-17-2013 09:17 AM
[SOLVED] Outputting X display from inside an LXC Container charlie101 Linux - Virtualization and Cloud 1 02-04-2013 09:41 PM
How to end a Linux Container (LXC) from within? Skaperen Linux - Virtualization and Cloud 0 06-14-2011 09:37 AM


All times are GMT -5. The time now is 03:50 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration