Menu
blog.headdesk.me
blog.headdesk.me

LXC and CentOS 7

Posted on 2015/03/132015/06/21

LXC has quickly become my favorate test bed. Starting a CentOS 7 container is however slightly complicated.

First, edit the centos lxc config and remove setpcap

[code]
# /usr/share/lxc/config/centos.common.conf
– lxc.cap.drop = mac_admin mac_override setfcap setpcap
+ lxc.cap.drop = mac_admin mac_override setfcap
[/code]

Deploy your container

[code]
$ lxc-create -t centos -n c7m2 — –release 7
[/code]

Then remove the tmpfs mount on the container’s fstab

[code]
# /var/lib/lxc/c7m2/rootfs/etc/fstab
– none /dev/shm tmpfs nosuid,nodev 0 0
[/code]

Then disable apparmor in container’s config

[code]
# /var/lib/lxc/c7m2/config
+ lxc.aa_profile = unconfined
[/code]

References:

  • https://github.com/lxc/lxc/pull/342
  • https://github.com/SolidCharity/LightBuildServer/issues/68

facebookShare on Facebook
TwitterTweet

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Full text search

Recent Posts

  • Dumping AWS Organization tree
  • Free is the most expensive
  • Terraform conditional resource and blocks
  • Upgrade Ubuntu 16.04 to latest release
  • Inspect and control network traffic on AWS
  • aws (8)
  • coffee (1)
  • headfi (1)
  • linux (7)
  • others (55)
  • security (2)
  • tech (36)
  • wordpress (2)

apache aws awscli azure backup cloud coffee coreos distributed filesystem docker ec2 EL8 elasticcache etckeeper featured heartbleed kernel linux mail meltdown mysql php pine python rdp rds Redhat Red Hat RHEL RHEL7 rpm Ryzen snapshot spectre SSL systemd tech terraform ubuntu ubuntu upgrade vector vpn wordpress xtreemfs yum

©2022 blog.headdesk.me | Powered by SuperbThemes & WordPress