Re: [Lxc-users] [lxc-devel] Request for inclusion into mainline LXC utils

2010-01-25 Thread Michael H. Warfield
On Mon, 2010-01-25 at 01:01 -0500, Michael H. Warfield wrote: : - Snip... FOUND IT! [r...@alcove ~]# cat /proc/sys/net/ipv6/conf/all/accept_ra 1 r...@ubuntu:~# cat /proc/sys/net/ipv6/conf/all/accept_ra 0 That's what was killing me and blocking autoconf in Debian. I set that to 1

Re: [Lxc-users] How to make a container init DIE after finishing runlevel 0

2010-01-25 Thread Michael H. Warfield
-- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF| possible worlds. A pessimist is sure

Re: [Lxc-users] How to make a container init DIE after finishing runlevel 0

2010-01-25 Thread Michael H. Warfield
On Tue, 2010-01-26 at 01:50 +0100, Daniel Lezcano wrote: Michael H. Warfield wrote: On Tue, 2010-01-26 at 00:42 +0100, Daniel Lezcano wrote: I trick I just found: while $(true); do inotifywait /var/lib/lxc/debian/rootfs/var/run/utmp; if [ $(wc -l /cgroup/debian/tasks

Re: [Lxc-users] How to make a container init DIE after finishing runlevel 0

2010-01-25 Thread Michael H. Warfield
On Tue, 2010-01-26 at 01:37 +0100, Daniel Lezcano wrote: Ah, ok didn't know upstart kept using utmp for compatibility. Interesting. Too much depends on that entire utmp.h stuff. Thou shalt NOT break Posix compliance. Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com

Re: [Lxc-users] How to make a container init DIE after finishing runlevel 0

2010-01-25 Thread Michael H. Warfield
On Mon, 2010-01-25 at 20:50 -0500, Michael H. Warfield wrote: Mui Bien! Gracias! Or... I really should have responded... Merci beaucop. Studying Spanish. Haven't had French since high school (and my Russian is real rusty). But I'm trying... Attached. Mike Regards, Mike -- Michael H

Re: [Lxc-users] Poor network performance between container and host

2010-01-30 Thread Michael H. Warfield
I've had problems with it on some kernel revs with host to guest connections. Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live

Re: [Lxc-users] Executing a command inside a running container?

2010-01-31 Thread Michael H. Warfield
On Sun, 2010-01-31 at 13:38 -0600, Tony Risinger wrote: On Sat, Jan 30, 2010 at 12:11 PM, Michael H. Warfield m...@wittsend.com wrote: On Sat, 2010-01-30 at 14:20 +0100, Dominik Schulz wrote: Hi, I'm fairly new to LXC and I am looking for a way to execute a command inside

Re: [Lxc-users] mac addresses

2010-02-12 Thread Michael H. Warfield
-187-206-74.nwrknj.fios.verizon.net (71.187.206.74) 17.883 ms 12.380 ms 14.285 ms pa2:~ # Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9

Re: [Lxc-users] Dynamic devices...

2010-03-07 Thread Michael H. Warfield
. Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF| possible worlds. A pessimist is sure

Re: [Lxc-users] Dynamic devices...

2010-03-07 Thread Michael H. Warfield
the mikeyism's, I can post what I've done. May be of some use to others or as yet another fine example of what not to do and what to avoid. :-) Mike On Mar 6, 2010, at 11:49 AM, Michael H. Warfield m...@wittsend.com wrote: Hey all, This is sort of a jump ball for both the OpenVZ camp

Re: [Lxc-users] lxc-start on openvz tempate

2010-06-24 Thread Michael H. Warfield
options as discussed in some other threads? I would like to deploy and test that and test to see if remounting still propagates ro/rw changes between containers. Thanks -- Daniel Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw

Re: [Lxc-users] failed to create pty #0

2010-09-20 Thread Michael H. Warfield
something in that shutdown file has the capacity to disable the host's ability to start further containers and also disable the ability to ssh into already running ones (thankfully, lxc-console still worked). John Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com

Re: [Lxc-users] How do I remove udev from upgrade

2010-10-30 Thread Michael H. Warfield
that thinks, that is to say, a thing that doubts, affrims, denies, understands a few things, is ignorant of many things, wills, refrains from willing, and also imagines and senses. - Rene Descartes Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw

Re: [Lxc-users] LXC and IPv6

2010-11-18 Thread Michael H. Warfield
On Thu, 2010-11-18 at 19:38 +, Gordon Henderson wrote: Anyone tried LXC with IPv6? Any reason it shouldn't just work? Works fine for me and I've been using it (IPv6) for years. Cheers, Gordon Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com

Re: [Lxc-users] limiting RAM usage and disk space usage

2010-12-02 Thread Michael H. Warfield
be pretty neat. Wouldn't simply adding the rootfs to the fstab conf with the file system image and the -o loop option do it? I would think it would. I haven't tried it in lxc but I do it all the time just for general mounting and day to day work. -serge Regards, Mike -- Michael H. Warfield

Re: [Lxc-users] limiting RAM usage and disk space usage

2010-12-02 Thread Michael H. Warfield
Sorry, I should have added an example... Below... On Thu, 2010-12-02 at 22:18 -0500, Michael H. Warfield wrote: On Thu, 2010-12-02 at 18:29 -0600, Serge E. Hallyn wrote: Quoting Gordon Henderson (gor...@drogon.net): On Thu, 2 Dec 2010, Serge E. Hallyn wrote: Quoting Gordon

Re: [Lxc-users] On clean shutdown of Ubuntu 10.04 containers

2010-12-06 Thread Michael H. Warfield
. But what's the rc_* things in there? Something you sourced out of rc.status? That's something SUSE? Nice thoughts in there. Could be adaptable. :-)=) Checking for LXC containers... running : - Snip Mike -- Michael H. Warfield (AI4NB

Re: [Lxc-users] updated lxc template for debian squeeze - with attachedscript ; )

2011-03-11 Thread Michael H. Warfield
for. - Walter -- Colocation vs. Managed Hosting A question and answer guide to determining the best fit for your organization - today and in the future. http://p.sf.net/sfu/internap-sfd2d -- Michael H. Warfield (AI4NB

Re: [Lxc-users] failed to create pty #0

2011-06-01 Thread Michael H. Warfield
into this same damn problem. Still. So I finally had to drill into it. On Mon, 2010-09-20 at 09:03 -0400, Michael H. Warfield wrote: On Mon, 2010-09-20 at 05:29 -0400, l...@jelmail.com wrote: Hi Daniel, I have tracked down this issue somewhat. It seems to be caused by shutting down

Re: [Lxc-users] [PATCH] ignore non-lxc configuration line

2011-06-01 Thread Michael H. Warfield
+ */ + if (strncmp(line, lxc., 4)) goto out; - } + + ret = -1; dot = strstr(line, =); if (!dot) { -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois

Re: [Lxc-users] [PATCH] ignore non-lxc configuration line

2011-06-02 Thread Michael H. Warfield
On Wed, 2011-06-01 at 20:10 -0400, Michael H. Warfield wrote: On Fri, 2011-05-13 at 22:32 +0200, Daniel Lezcano wrote: From: Daniel Lezcano daniel.lezc...@free.fr We ignore the line of in the configuration file not beginning by lxc. So we can mix the configuration file with another

Re: [Lxc-users] lxc on Fedora 15

2011-06-20 Thread Michael H. Warfield
. Get your free trial download today. http://p.sf.net/sfu/quest-sfdev2dev ___ Lxc-users mailing list Lxc-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/lxc-users -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-06-24 Thread Michael H. Warfield
; - err = lxc_cgroup_path_get(nsgroup, name); + err = lxc_cgroup_path_get(nsgroup, freezer, name); if (err) return -1; -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-06-25 Thread Michael H. Warfield
! And tomorrow the init process will be firefox ... Hmmm... Something fishy there for sure. Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-06-26 Thread Michael H. Warfield
On Sun, 2011-06-26 at 18:27 +0200, Daniel Lezcano wrote: On 06/26/2011 05:52 PM, Michael H. Warfield wrote: On Sun, 2011-06-26 at 17:27 +0200, Daniel Lezcano wrote: On 06/26/2011 05:06 PM, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): cd /sys/fs/cgroup

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-06-26 Thread Michael H. Warfield
Looking at the sources and Serge's patch... On Sun, 2011-06-26 at 13:33 -0400, Michael H. Warfield wrote: On Sun, 2011-06-26 at 18:27 +0200, Daniel Lezcano wrote: On 06/26/2011 05:52 PM, Michael H. Warfield wrote: On Sun, 2011-06-26 at 17:27 +0200, Daniel Lezcano wrote: On 06/26/2011

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-06-26 Thread Michael H. Warfield
On Sun, 2011-06-26 at 13:56 -0400, Michael H. Warfield wrote: Looking at the sources and Serge's patch... On Sun, 2011-06-26 at 13:33 -0400, Michael H. Warfield wrote: On Sun, 2011-06-26 at 18:27 +0200, Daniel Lezcano wrote: On 06/26/2011 05:52 PM, Michael H. Warfield wrote: On Sun

Re: [Lxc-users] lxc-start at boot

2011-06-26 Thread Michael H. Warfield
cleaning it up and send it to Daniel. Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-06-26 Thread Michael H. Warfield
On Sun, 2011-06-26 at 14:00 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Thanks, Michael, good catch. Now wait a minute. Is that a typo here: No it's not, but: char *s = index(retbuf, '.'); If you're doing, in effect, a dirname here

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-06-27 Thread Michael H. Warfield
On Sun, 2011-06-26 at 18:49 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Sun, 2011-06-26 at 14:00 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Thanks, Michael, good catch. Now wait a minute

Re: [Lxc-users] read only rootfs

2011-06-27 Thread Michael H. Warfield
inside the containers to prohibit the remount problems. It would probably be a good idea to test it and see if the container can remount an ro mount point as rw and what the impact would be. Justin Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw

Re: [Lxc-users] read only rootfs

2011-06-27 Thread Michael H. Warfield
On Mon, 2011-06-27 at 12:33 -0500, C Anthony Risinger wrote: On Mon, Jun 27, 2011 at 12:06 PM, Michael H. Warfield m...@wittsend.com wrote: On Mon, 2011-06-27 at 17:20 +0100, Justin Cormack wrote: On Mon, 2011-06-27 at 18:05 +0200, Samuel Maftoul wrote: I tried several ways to have

Re: [Lxc-users] [PATCH 2/2] cgroups: support cgroups mounted in multiple places

2011-07-01 Thread Michael H. Warfield
On Fri, 2011-07-01 at 10:12 +0200, Daniel Lezcano wrote: On 06/27/2011 03:53 PM, Michael H. Warfield wrote: Cool. I now have it running in 3 environments. Two are Fedora 12 (I know, I know, it's on my todo list) i686 systems with single cgroup mounts while the other is my Fedora 15 x86_64

Re: [Lxc-users] Latest test results - Was: cgroups: support cgroups mounted in multiple places (v3)

2011-07-02 Thread Michael H. Warfield
On Sat, 2011-07-02 at 15:13 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): ... F15 systemd: Passed. F12 single mount: Passed. F13 single mount: Passed. F14 single mount: Passed. F14 libcgroup:Failed. I had the default /etc/cgconfig.conf file

Re: [Lxc-users] Latest test results - Was: cgroups: support cgroups mounted in multiple places (v3)

2011-07-02 Thread Michael H. Warfield
On Sat, 2011-07-02 at 23:04 +, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Sat, 2011-07-02 at 15:13 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): ... F15 systemd: Passed. F12 single mount: Passed. F13

Re: [Lxc-users] Latest test results - Was: cgroups: support cgroups mounted in multiple places (v3)

2011-07-15 Thread Michael H. Warfield
:/ramezhanna/Fedora_15/ for those who want to test on f15 I will keep following master so keep an eye here for updates as well On Thu, Jul 7, 2011 at 4:08 PM, Michael H. Warfield m...@wittsend.comwrote: On Wed, 2011-07-06 at 14:06 +0300, Ramez Hanna wrote: where can i get

Re: [Lxc-users] Latest test results - Was: cgroups: support cgroups mounted in multiple places (v3)

2011-07-15 Thread Michael H. Warfield
On Fri, 2011-07-15 at 17:46 +0300, Ramez Hanna wrote: On Fri, Jul 15, 2011 at 5:38 PM, Michael H. Warfield m...@wittsend.comwrote: On Fri, 2011-07-15 at 17:25 +0300, Ramez Hanna wrote: tested f14 and debian squeeze containers on f15 host (systemd) lxc-ps returns nothing for running

Re: [Lxc-users] what's the difference in lxc-attach

2011-07-15 Thread Michael H. Warfield
system with a 2.6.38 kernel. If it has not made it into a released kernel, have you built a custom kernel with it? C. Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois

Re: [Lxc-users] what's the difference in lxc-attach

2011-07-15 Thread Michael H. Warfield
On Fri, 2011-07-15 at 18:36 +0300, Ramez Hanna wrote: On Fri, Jul 15, 2011 at 6:04 PM, Michael H. Warfield m...@wittsend.comwrote: On Fri, 2011-07-15 at 17:50 +0300, Ramez Hanna wrote: how can i check if lxc-attach is not working because of the kernel or because of other bug

Re: [Lxc-users] read only rootfs

2011-07-15 Thread Michael H. Warfield
. http://p.sf.net/sfu/splunk-d2d-c2 ___ Lxc-users mailing list Lxc-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/lxc-users -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw

Re: [Lxc-users] what's the difference in lxc-attach

2011-07-15 Thread Michael H. Warfield
On Fri, 2011-07-15 at 19:41 +0300, Ramez Hanna wrote: On Fri, Jul 15, 2011 at 7:28 PM, Michael H. Warfield m...@wittsend.comwrote: On Fri, 2011-07-15 at 18:36 +0300, Ramez Hanna wrote: On Fri, Jul 15, 2011 at 6:04 PM, Michael H. Warfield m...@wittsend.com wrote: On Fri, 2011-07

Re: [Lxc-users] what's the difference in lxc-attach

2011-07-16 Thread Michael H. Warfield
On Sat, 2011-07-16 at 23:59 +0300, Ramez Hanna wrote: On Sat, Jul 16, 2011 at 8:27 PM, Michael H. Warfield m...@wittsend.comwrote: On Fri, 2011-07-15 at 20:17 +0300, Ramez Hanna wrote: Big Snip thanks a lot for the detailed answer by the way have you been succesfull

Re: [Lxc-users] [PATCH] Re: read only rootfs

2011-07-18 Thread Michael H. Warfield
On Mon, 2011-07-18 at 07:31 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Unfortunately, I also still find that if there's a -o remount,ro in the halt/reboot script, it still sets /dev/pts to ro and that still propagates to the host and to the other

Re: [Lxc-users] [PATCH] Re: read only rootfs

2011-07-19 Thread Michael H. Warfield
On Mon, 2011-07-18 at 07:31 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Unfortunately, I also still find that if there's a -o remount,ro in the halt/reboot script, it still sets /dev/pts to ro and that still propagates to the host and to the other

Re: [Lxc-users] [PATCH] Re: read only rootfs

2011-07-19 Thread Michael H. Warfield
On Tue, 2011-07-19 at 09:55 -0400, Michael H. Warfield wrote: On Mon, 2011-07-18 at 07:31 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Unfortunately, I also still find that if there's a -o remount,ro in the halt/reboot script, it still sets /dev/pts

Re: [Lxc-users] [PATCH] Re: read only rootfs

2011-07-19 Thread Michael H. Warfield
On Mon, 2011-07-18 at 07:31 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Unfortunately, I also still find that if there's a -o remount,ro in the halt/reboot script, it still sets /dev/pts to ro and that still propagates to the host and to the other

Re: [Lxc-users] read only rootfs

2011-07-19 Thread Michael H. Warfield
if they are set? Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF| possible worlds

Re: [Lxc-users] read only rootfs

2011-07-19 Thread Michael H. Warfield
On Tue, 2011-07-19 at 16:50 -0400, Michael H. Warfield wrote: On Tue, 2011-07-19 at 15:32 -0500, Serge E. Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Tue, 2011-07-19 at 13:34 -0500, Serge E. Hallyn wrote: Quoting C Anthony Risinger (anth...@xtfx.me

Re: [Lxc-users] read only rootfs

2011-07-20 Thread Michael H. Warfield
On Wed, 2011-07-20 at 07:10 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): [root@forest ~]# lxc-start --name Plover lxc-start: Invalid argument - pivot_root syscall failed sort of unrelated, but Rob Landley had mentioned he wanted to fix chroot to prevent

Re: [Lxc-users] lxc-console over ssh

2011-07-27 Thread Michael H. Warfield
making the ssh more convenient. Thanks, John Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key

Re: [Lxc-users] Mitigating LXC Container Evasion?

2011-07-31 Thread Michael H. Warfield
in the man page either) and honestly say there are not reasons for a container wanting to do at least one or two of them (even given that every container I have sets its own hostname). Gotta be a better answer than that. Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com

Re: [Lxc-users] Mitigating LXC Container Evasion?

2011-07-31 Thread Michael H. Warfield
phone with K-9 Mail. Please excuse my brevity. Michael H. Warfield m...@wittsend.com wrote: On Sun, 2011-07-31 at 17:59 +0200, Robert Kawecki wrote: Dnia 2011-07-30, sob o godzinie 21:10 -0400, Matthew Franz pisze: Had seen some previous discussions before, but are there any ways

Re: [Lxc-users] Fedora 15 on Fedora 15 LXC with Libvirt

2011-08-02 Thread Michael H. Warfield
@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/lxc-users -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP

Re: [Lxc-users] Mitigating LXC Container Evasion?

2011-08-03 Thread Michael H. Warfield
-- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF| possible worlds. A pessimist is sure

Re: [Lxc-users] Mitigating LXC Container Evasion?

2011-08-03 Thread Michael H. Warfield
On Wed, 2011-08-03 at 21:01 -0700, Casey Schaufler wrote: On 8/3/2011 4:24 PM, Serge E. Hallyn wrote: Quoting Andre Nathan (an...@digirati.com.br): Hi Mike On Wed, 2011-08-03 at 17:52 -0400, Michael H. Warfield wrote: That's v4 syntax. Does it not work at all? Did you try

Re: [Lxc-users] Mitigating LXC Container Evasion?

2011-08-04 Thread Michael H. Warfield
seriously. If SMACK does not support IPv6 then SMACK is broken. Fix it. IPv6 is a reality. Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes

Re: [Lxc-users] Mitigating LXC Container Evasion?

2011-08-04 Thread Michael H. Warfield
On Thu, 2011-08-04 at 09:11 -0700, Casey Schaufler wrote: On 8/4/2011 6:52 AM, Michael H. Warfield wrote: On Wed, 2011-08-03 at 22:21 -0700, Casey Schaufler wrote: Smack does not use IPsec on IPv4. Smack uses CIPSO. CIPSO is implemented completely within the kernel. It has no user space

Re: [Lxc-users] [lxc-devel] mount ro in guest change host filesystem to ro

2011-09-04 Thread Michael H. Warfield
mode=0755,nosuid,optional 0 0 Regards, Axel Schöner On Friday, 2. September 2011 11:51:55 Michael H. Warfield wrote: On Fri, 2011-09-02 at 08:35 +0400, Michael Tokarev wrote: On 02.09.2011 00:46, Daniel Lezcano wrote: On 09/01/2011 09:30 PM, Nico wrote: Hi, I

Re: [Lxc-users] stopping a container

2011-09-06 Thread Michael H. Warfield
On Tue, 2011-09-06 at 17:34 -0400, Brian K. White wrote: On 9/5/2011 12:34 PM, Michael H. Warfield wrote: On Mon, 2011-09-05 at 09:24 +0200, Papp Tamas wrote: On 09/05/2011 08:38 AM, Jäkel, Guido wrote: What is the right way to stop a container? Dear Papp, Like with the thread

Re: [Lxc-users] seeing a network pause when starting and stopping LXCs - how do I stop this?

2011-12-08 Thread Michael H. Warfield
with and do not agree with but it is what it is and I doubt it will ever change. I think there's a patch going into the lxc-tools to avoid this problem. Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http

Re: [Lxc-users] seeing a network pause when starting and stopping LXCs - how do I stop this ?

2011-12-12 Thread Michael H. Warfield
with that early decision regarding MAC addresses. It makes a MESS out of IPv6! Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live

Re: [Lxc-users] seeing a network pause when starting and stopping LXCs - how do I stop this ?

2011-12-13 Thread Michael H. Warfield
I always hate replying to my own posts but I have stumbled onto some interesting clarification as I've continued to play with this... Below in-line. On Tue, 2011-12-13 at 01:30 -0500, Michael H. Warfield wrote: On Mon, 2011-12-12 at 08:43 +0100, Ulli Horlacher wrote: On Sun 2011-12-11 (19

Re: [Lxc-users] LXC and IPv6 Launch day (June 6th, 2012.)

2012-01-18 Thread Michael H. Warfield
is for working? Greetings from Hungary Cool... Was there in Budapest (mostly on Buda side of the river) years ago. Lovely, lovely. Didn't get out in the countryside nearly as much as I would have liked. Cheers from the States! lak...@d250.hu D250 Laboratories www.D250.hu Regards, Mike -- Michael H

Re: [Lxc-users] lxc macvlan bridge problem

2012-09-26 Thread Michael H. Warfield
/ ___ Lxc-users mailing list Lxc-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/lxc-users -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9

Re: [Lxc-users] systemd inside LXC

2012-10-20 Thread Michael H. Warfield
-- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF| possible worlds. A pessimist is sure

[Lxc-users] Unable to run systemd in an LXC / cgroup container.

2012-10-21 Thread Michael H. Warfield
that we can't override or configure? Or is it there and I'm just missing it trying to examine the sources? That's how I found where the problem lay. Regards, Mike -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http

Re: [Lxc-users] systemd inside LXC

2012-10-21 Thread Michael H. Warfield
On Sun, 2012-10-21 at 14:49 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Serge, I'm going to top post here simply because this is going to go off in a different direction and bringing in an old thread but it is related... Back on February 14 you

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-21 Thread Michael H. Warfield
On Mon, 2012-10-22 at 02:53 +0200, Kay Sievers wrote: On Sun, Oct 21, 2012 at 11:25 PM, Michael H. Warfield m...@wittsend.com wrote: This is being directed to the systemd-devel community but I'm cc'ing the lxc-users community and the Fedora community on this for their input as well. I

Re: [Lxc-users] systemd inside LXC

2012-10-21 Thread Michael H. Warfield
On Sun, 2012-10-21 at 14:49 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Serge, ... Short of building a custom systemd, I don't know how to fix that problem and I suspect this OP is going to run into this same thing (container taking over host's console

Re: [Lxc-users] systemd inside LXC

2012-10-22 Thread Michael H. Warfield
On Mon, 2012-10-22 at 15:14 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Serge, On Mon, 2012-10-22 at 09:12 -0500, Serge Hallyn wrote: Quoting Serge Hallyn (serge.hal...@canonical.com): Quoting Michael H. Warfield (m...@wittsend.com): On Sun, 2012

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-22 Thread Michael H. Warfield
On Mon, 2012-10-22 at 22:50 +0200, Lennart Poettering wrote: On Mon, 22.10.12 11:48, Michael H. Warfield (m...@wittsend.com) wrote: To summarize the problem... The LXC startup binary sets up various things for /dev and /dev/pts for the container to run properly and this works

Re: [Lxc-users] systemd inside LXC

2012-10-22 Thread Michael H. Warfield
On Mon, 2012-10-22 at 16:21 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Mon, 2012-10-22 at 15:14 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Serge, On Mon, 2012-10-22 at 09:12 -0500, Serge Hallyn wrote

Re: [Lxc-users] systemd inside LXC

2012-10-22 Thread Michael H. Warfield
On Mon, 2012-10-22 at 16:21 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Mon, 2012-10-22 at 15:14 -0500, Serge Hallyn wrote: Trimming some overhead we've seen enough of... How about just a devtmpfs? We actually now do this by default (as of very

Re: [Lxc-users] systemd inside LXC

2012-10-22 Thread Michael H. Warfield
On Mon, 2012-10-22 at 18:05 -0400, Michael H. Warfield wrote: On Mon, 2012-10-22 at 16:21 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Mon, 2012-10-22 at 15:14 -0500, Serge Hallyn wrote: Trimming some overhead we've seen enough of... How about just

Re: [Lxc-users] systemd inside LXC

2012-10-22 Thread Michael H. Warfield
On Mon, 2012-10-22 at 18:37 -0400, Michael H. Warfield wrote: On Mon, 2012-10-22 at 18:05 -0400, Michael H. Warfield wrote: On Mon, 2012-10-22 at 16:21 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Mon, 2012-10-22 at 15:14 -0500, Serge Hallyn wrote

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
Sorry for taking a few days to get back on this. I was delivering a guest lecture up at Fordham University last Tuesday so I was out of pocket a couple of days or I would have responded sooner... On Mon, 2012-10-22 at 16:59 -0400, Michael H. Warfield wrote: On Mon, 2012-10-22 at 22:50 +0200

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
On Thu, 2012-10-25 at 11:19 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Sorry for taking a few days to get back on this. I was delivering a guest lecture up at Fordham University last Tuesday so I was out of pocket a couple of days or I would have responded

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
Hey Serge, On Thu, 2012-10-25 at 11:19 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): Sorry for taking a few days to get back on this. I was delivering a guest lecture up at Fordham University last Tuesday so I was out of pocket a couple of days or I would

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
On Thu, 2012-10-25 at 13:23 -0400, Michael H. Warfield wrote: Hey Serge, On Thu, 2012-10-25 at 11:19 -0500, Serge Hallyn wrote: ... Oh, sorry - I take back that suggestion :) Note that we have mount hooks, so templates could install a mount hook to mount a tmpfs onto /dev

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
On Thu, 2012-10-25 at 14:02 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Thu, 2012-10-25 at 13:23 -0400, Michael H. Warfield wrote: Hey Serge, On Thu, 2012-10-25 at 11:19 -0500, Serge Hallyn wrote: ... Oh, sorry - I take back

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
On Thu, 2012-10-25 at 23:38 +0200, Lennart Poettering wrote: On Thu, 25.10.12 11:59, Michael H. Warfield (m...@wittsend.com) wrote: I've got some more problems relating to shutting down containers, some of which may be related to mounting tmpfs on /run to which /var/run is symlinked

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
On Thu, 2012-10-25 at 20:30 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Thu, 2012-10-25 at 23:38 +0200, Lennart Poettering wrote: On Thu, 25.10.12 11:59, Michael H. Warfield (m...@wittsend.com) wrote: I've got some more problems relating to shutting

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-25 Thread Michael H. Warfield
On Thu, 2012-10-25 at 15:42 -0400, Michael H. Warfield wrote: On Thu, 2012-10-25 at 14:02 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Thu, 2012-10-25 at 13:23 -0400, Michael H. Warfield wrote: Hey Serge, On Thu, 2012-10-25 at 11:19 -0500, Serge

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-26 Thread Michael H. Warfield
Adding in the lxc-devel list. On Thu, 2012-10-25 at 22:59 -0400, Michael H. Warfield wrote: On Thu, 2012-10-25 at 15:42 -0400, Michael H. Warfield wrote: On Thu, 2012-10-25 at 14:02 -0500, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Thu, 2012-10-25 at 13:23

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-26 Thread Michael H. Warfield
On Fri, 2012-10-26 at 12:11 -0400, Michael H. Warfield wrote: On Thu, 2012-10-25 at 23:38 +0200, Lennart Poettering wrote: On Thu, 25.10.12 11:59, Michael H. Warfield (m...@wittsend.com) wrote: I SUSPECT the hang condition is something to do with systemd trying to start and interactive

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-27 Thread Michael H. Warfield
place and lxc.hook.mount takes place after the mount. Problem is, the result of that rsync is not showing up in the mounted tmpfs file system but is showing up in the underlying parent file system as if it were run pre-mount. Something not right here... Regards, Mike -- Michael H. Warfield

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-27 Thread Michael H. Warfield
On Sat, 2012-10-27 at 13:40 -0400, Michael H. Warfield wrote: /me erasing everything at this point and taking off the systemd crew, since this will have no relevance to them... Testing the hook feature out using git rev (finally got it built)... I added this line to my config

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-27 Thread Michael H. Warfield
On Sat, 2012-10-27 at 13:51 -0400, Michael H. Warfield wrote: On Sat, 2012-10-27 at 13:40 -0400, Michael H. Warfield wrote: /me erasing everything at this point and taking off the systemd crew, since this will have no relevance to them... Testing the hook feature out using git rev

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-27 Thread Michael H. Warfield
On Sat, 2012-10-27 at 19:44 +0100, Colin Guthrie wrote: 'Twas brillig, and Michael H. Warfield at 26/10/12 18:18 did gyre and gimble: What the hell is this? /var/run is symlinked to /run and is mounted with a tmpfs. Yup, that's how /var/run and /run is being handled these days

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-28 Thread Michael H. Warfield
On Sun, 2012-10-28 at 18:52 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Sat, 2012-10-27 at 13:51 -0400, Michael H. Warfield wrote: On Sat, 2012-10-27 at 13:40 -0400, Michael H. Warfield wrote: /me erasing everything at this point and taking off

Re: [Lxc-users] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-28 Thread Michael H. Warfield
-- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF| possible worlds. A pessimist is sure

Re: [Lxc-users] [lxc-devel] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-28 Thread Michael H. Warfield
On Sun, 2012-10-28 at 18:52 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Sat, 2012-10-27 at 13:51 -0400, Michael H. Warfield wrote: On Sat, 2012-10-27 at 13:40 -0400, Michael H. Warfield wrote: /me erasing everything at this point and taking off

Re: [Lxc-users] [lxc-devel] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-28 Thread Michael H. Warfield
On Sun, 2012-10-28 at 23:02 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Sun, 2012-10-28 at 18:52 +0100, Serge Hallyn wrote: : I've got a rather minimal patch (appended below) to add the support for mounting and populating a minimal /dev working

Re: [Lxc-users] [lxc-devel] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-30 Thread Michael H. Warfield
On Sun, 2012-10-28 at 23:02 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): : I did see some errors setting up that dev... -- [root@forest mhw]# lxc-start -n Alcove lxc-start: No such file or directory - failed to mount '/dev/pts/59'-'/usr/lib64/lxc

Re: [Lxc-users] [lxc-devel] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-30 Thread Michael H. Warfield
On Tue, 2012-10-30 at 19:35 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Sun, 2012-10-28 at 23:02 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): : I did see some errors setting up that dev... -- [root

Re: [Lxc-users] [lxc-devel] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-30 Thread Michael H. Warfield
On Mon, 2012-10-29 at 10:18 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): ... Yeah, I don't think I need to play a game like this anymore. I'd have to go back through some old old E-Mails to see why I did that before. I seem to recall we were playing

Re: [Lxc-users] [lxc-devel] [GIT] lxc branch, master, updated. 7f99e339363d9f005c9386f60a1d8c0953c85053

2012-10-31 Thread Michael H. Warfield
@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/lxc-users -- Michael H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key

Re: [Lxc-users] [lxc-devel] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-31 Thread Michael H. Warfield
H. Warfield (AI4NB) | (770) 985-6132 | m...@wittsend.com /\/\|=mhw=|\/\/ | (678) 463-0932 | http://www.wittsend.com/mhw/ NIC whois: MHW9 | An optimist believes we live in the best of all PGP Key: 0x674627FF| possible worlds. A pessimist is sure

Re: [Lxc-users] [lxc-devel] [systemd-devel] Unable to run systemd in an LXC / cgroup container.

2012-10-31 Thread Michael H. Warfield
On Wed, 2012-10-31 at 18:30 +0100, Serge Hallyn wrote: Quoting Michael H. Warfield (m...@wittsend.com): On Wed, 2012-10-31 at 18:15 +0100, Serge Hallyn wrote: Can you tell me the exact git tree and branch you are using? I'm using head. I'm not specifying a tree. ? I'm not sure

Re: [Lxc-users] [lxc-devel] [GIT] lxc branch, master, updated. 7f99e339363d9f005c9386f60a1d8c0953c85053

2012-11-01 Thread Michael H. Warfield
On Thu, 2012-11-01 at 21:20 +0100, Daniel Baumann wrote: On 11/01/2012 09:08 PM, Michael H. Warfield wrote: I know, I KNOW this is an 11th hour request. Can we please get Serge's autodev stuff into this release? Please? release early, release often? just release current git as 0.8.0 now

  1   2   >