Join GitHub today
GitHub is home to over 28 million developers working together to host and review code, manage projects, and build software together.Sign up
Add support for setting sysctls #19265
referenced this pull request
Jan 12, 2016
Feb 18, 2016
We are looking into allowing ping to work when running in prctl(NO_NEW_PRIVS) mode.
If we get this patch you would be able to set net.ipv4.ping_group_range "0 4294967295", and NO_NEW_PRIVS and users could still use ping inside of their container, without using any SETUID apps.
@rhatdan can you rebase? looks like your change to engine-api is in master now, so the "vendor" check should also pass after a rebase (https://github.com/docker/docker/blob/master/vendor/src/github.com/docker/engine-api/types/container/host_config.go#L266)