-
Notifications
You must be signed in to change notification settings - Fork 2.1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Cannot run container in existing user namespace #101
Comments
It looks like docker-archive/libcontainer#609 will handle this, but in needs to be ported over |
@dqminh did mention that he is going to port it soon. |
My goal here is really for shared network namespaces between containers that use user namespaces. @LK4D4 mentioned that it is possible to join the network namespace before unsharing the user namespace which would also be an acceptable solution for my use case. |
This works properly now (as of awhile ago after the rewrite of nsexec.c and the join code); should this issue be closed? |
@estesp Thanks for confirming, closing. |
Attempting to run a container in an existing user namespace simply ignores the path value and creates a new user namespace:
It looks like the code will need some modification because you can't join an existing user namespace once you are in multithreaded code.
The text was updated successfully, but these errors were encountered: