Skip to content

Commit

Permalink
Unprivileged's incompatibility with type=none docs
Browse files Browse the repository at this point in the history
Unprivileged containers are not compatible with sharing the
host namespace due to an inability to mount sysfs. Add docs
in lxc.container.conf to document that out.

Refs #2463

Signed-off-by: Alexandros Kosiaris <akosiaris@gmail.com>
  • Loading branch information
akosiaris committed Jul 30, 2018
1 parent 646b1be commit e4b3e36
Showing 1 changed file with 3 additions and 1 deletion.
4 changes: 3 additions & 1 deletion doc/lxc.container.conf.sgml.in
Expand Up @@ -430,7 +430,9 @@ Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA
network devices are usable in the container. It also
means that if both the container and host have upstart as
init, 'halt' in a container (for instance) will shut down the
host.
host. Note that unprivileged containers do not work with this
setting due to an inability to mount sysfs. An unsafe workaround
would be to bind mount the host's sysfs.
</para>

<para>
Expand Down

0 comments on commit e4b3e36

Please sign in to comment.