Join GitHub today
GitHub is home to over 36 million developers working together to host and review code, manage projects, and build software together.Sign up
rootless: allow resource isolation with cgroup v2 #3104
this is not adding any support for cgroup v2. It is only used to avoid some early errors when attempting to use cgroup v2 for rootless users.
with the updated versions of conmon and crun, on a Fedora 30 configured with cgroup v2 unified mode, I can:
[APPROVALNOTIFIER] This PR is APPROVED
This pull-request has been approved by: giuseppe
The full list of commands accepted by this bot can be found here.
The pull request process is described here
Needs approval from an approver in each of these files:
Approvers can indicate their approval by writing
@giuseppe: GitHub didn't allow me to request PR reviews from the following users: AkihiroSuda.
Note that only containers members and repo collaborators can review this PR, and authors cannot review their own PRs.
the only difference for rootless Podman with runc will be that if an user specifies any resource, Podman won't error out immediately but it will let the runtime handle it. I've not tried it but I'd expect it to fail on cgroup v2 also when resources are not specified