[lxc-devel] [PATCH] Ubuntu template: Allow mknod (fixing udev upgrades) and drop mac_override and mac_admin from lxc.cap.drop as apparmor has/will have support for namespaces

2011-11-02 Thread Stéphane Graber
--- templates/lxc-ubuntu.in |5 - 1 files changed, 4 insertions(+), 1 deletions(-) diff --git a/templates/lxc-ubuntu.in b/templates/lxc-ubuntu.in index 4f44b03..2be8680 100644 --- a/templates/lxc-ubuntu.in +++ b/templates/lxc-ubuntu.in @@ -179,9 +179,12 @@ lxc.pts = 1024 lxc.rootfs = $ro

Re: [lxc-devel] Detecting if you are running in a container

2011-11-02 Thread Eric W. Biederman
Michael Tokarev writes: > [Replying to an oldish email...] > > On 12.10.2011 20:59, Kay Sievers wrote: >> On Mon, Oct 10, 2011 at 23:41, Lennart Poettering >> wrote: >>> On Mon, 10.10.11 13:59, Eric W. Biederman (ebied...@xmission.com) wrote: >> - udev. All of the kernel interfaces for u

Re: [lxc-devel] [Olsr-users] lxc network emulation

2011-11-02 Thread Markus Kittenberger
On Sat, Oct 22, 2011 at 12:01 AM, wrote: > In my machines there is also sshd and other things that are usually there : > hmm i do not expect ssh server to be ressource hungry but a serial console is enough, imho (or even nothing,.. (-;) i had around 2-3MB ram usage per container (debian minimal

[lxc-devel] Linux Containers, 2 questions

2011-11-02 Thread Dooley, David
Hi, Your help would be greatly appreciated. I have two application server nodes on Linux 2.6.18 that handle Live traffic. We have a budget for one new test server. I would like to mimic the Live environment with the idea of the "two" nodes. And so I came across an article on LXC! I see that I ne

[lxc-devel] [PATCH] add lxc-archlinux template

2011-11-02 Thread Alexander Vladimirov
Hi, here's the patch which adds Arch linux container template -- Alexander Vladimirov >From 5a9b41caaeae744c0667c50f7691b9237d5a6f8d Mon Sep 17 00:00:00 2001 From: Alexander Vladimirov Date: Sun, 30 Oct 2011 00:05:46 +0800 Subject: [PATCH] add lxc-archlinux template --- .gitignore

Re: [lxc-devel] Detecting if you are running in a container

2011-11-02 Thread Michael Tokarev
On 02.11.2011 03:51, Eric W. Biederman wrote: [] >> And having CAP_MKNOD in container may not be that bad either, while >> cgroup device.permission is set correctly - some nodes may need to >> be created still, even in an unprivileged containers. Who filters >> out CAP_MKNOD during container start

Re: [lxc-devel] Detecting if you are running in a container

2011-11-02 Thread Michael Tokarev
[Replying to an oldish email...] On 12.10.2011 20:59, Kay Sievers wrote: > On Mon, Oct 10, 2011 at 23:41, Lennart Poettering > wrote: >> On Mon, 10.10.11 13:59, Eric W. Biederman (ebied...@xmission.com) wrote: > >>> - udev. All of the kernel interfaces for udev should be supported in >>> cur