[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
** Changed in: maas Status: Triaged = Invalid ** Changed in: maas (Ubuntu) Status: Confirmed = Invalid -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
** Changed in: maas (Ubuntu) Importance: Undecided = High -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
** Branch linked: lp:~ubuntu-branches/ubuntu/trusty/lxc/trusty -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
This debdiff adds the apparmor profile to allow mounting ext*, xfs and btrfs filesystems inside containers. Currently the config files are going through some churn. Once that settles down, we could add a comment to the configuration files to 1. set lxc.aa_profile = lxc-container-default-with-nesting 2. add entries to the devices whitelist for either the device, or for loop devices ('lxc.cgroup.devices.allow = b 7:* rwm) I'd like to add an option to specify apparmor profile at create time, but am not yet sure how that's best done - the apparmor profile names are long, and a typo will be annoying. ** Patch added: lxc-mount.debdiff https://bugs.launchpad.net/ubuntu/+source/maas/+bug/1257389/+attachment/3926213/+files/lxc-mount.debdiff ** Changed in: lxc (Ubuntu) Assignee: Serge Hallyn (serge-hallyn) = (unassigned) -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
New debdiff. ** Patch removed: lxc-mount.debdiff https://bugs.launchpad.net/ubuntu/+source/maas/+bug/1257389/+attachment/3926213/+files/lxc-mount.debdiff ** Patch added: lxc-mount.debdiff https://bugs.launchpad.net/ubuntu/+source/maas/+bug/1257389/+attachment/3926214/+files/lxc-mount.debdiff -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
** Tags added: patch -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
This bug was fixed in the package lxc - 1.0.0~alpha3-0ubuntu7 --- lxc (1.0.0~alpha3-0ubuntu7) trusty; urgency=low * Add a lxc-default-with-mounting profile which allows the container to mount block filesystems. (LP: #1257389) -- Serge Hallyn serge.hal...@ubuntu.com Mon, 09 Dec 2013 13:19:31 -0600 ** Changed in: lxc (Ubuntu) Status: Triaged = Fix Released -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
I'll add an apparmor profile to trusty to allow the fs mounting. ** Changed in: lxc (Ubuntu) Importance: Undecided = High ** Changed in: lxc (Ubuntu) Assignee: (unassigned) = Serge Hallyn (serge-hallyn) ** Changed in: lxc (Ubuntu) Status: Confirmed = Triaged -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
Allowing ext4 mount by default in lxc would require a kernel ('linux' package) or security team task to vet the ext4 superblock parser etc in the kernel. We can however ship a (optional, non-default) apparmor policy allowing it to make that easier. -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs
[Bug 1257389] Re: cannot run maas-import-ephemerals inside lxc container
** Changed in: maas Status: Confirmed = Triaged ** Changed in: maas Importance: Undecided = High -- You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to lxc in Ubuntu. https://bugs.launchpad.net/bugs/1257389 Title: cannot run maas-import-ephemerals inside lxc container To manage notifications about this bug go to: https://bugs.launchpad.net/maas/+bug/1257389/+subscriptions -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs