Comments (7)
looks like userns-remap is causing trouble
$ docker run --userns=host --rm --runtime=runsc-debug hello-world
Hello from Docker!
from gvisor.
Strange that the hello-world container won't start up. It seems that the start
command is failing. Could you upload the logs from that command? The resultant log file will have the start
suffix in it. I think the above mentioned logs are from the create
command, which was successful.
from gvisor.
Note to self: It might be because of the custom uidMappings
and gidMappings
set in the container spec.
from gvisor.
added the latest logfile
runsc.log.20230909-162304.911145.start.txt
from gvisor.
A "broken pipe" error in urpc indicates that the runsc start
command failed to communicate with the runsc boot
process, for example if the runsc boot
process crashed while handling the request to start the container. Can you upload the *.boot.log
log? (Or simply upload every log you have.)
from gvisor.
these are the logs I have,
just to clarify
- all other containers fail to startup.
- userns-remap and no-new-privileges are enabled
- userland-proxy is disabled
- storage-driver is overlay2
runsc.log.20230910-092119.273955.create.txt
runsc.log.20230910-092119.343513.gofer.txt
runsc.log.20230910-092119.349445.boot.txt
runsc.log.20230910-092119.749576.start.txt
runsc.log.20230910-092119.850217.kill.txt
from gvisor.
Thanks for the report, we understand the issue. We are working on a resolution.
from gvisor.
Related Issues (20)
- runsc restore: extensive memory consumption
- 'CUDA-capable device(s) is/are busy or unavailable' on NVIDIA A10G GPUs HOT 1
- Add support for clone3 HOT 1
- TCP connections can stall when in-flight data exceeds 25% of receive buffer HOT 3
- 'an illegal memory access was encountered' on T4 GPU past a certain level of GPU mem allocation HOT 1
- Build failure with GCC 10 in systrap/sysmsg HOT 4
- Support Go 1.21 HOT 3
- Package tcpip/link/fdbased and tcpip/link/xdp fail to build for non-amd64 and non-arm64 Linux platforms
- Want to know why gvisor doesn't support maskedPaths and readonlyPaths in OCI spec HOT 4
- Watchdog hang, nested KVM virtualization in libvirt HOT 2
- RFC: supporting third-party network stack such as TLDK HOT 25
- Panic filling address space failed on arm64 HOT 12
- Basic install hangs umount at startup HOT 3
- Root Mount Propagation Option must Specify Private or Slave: "rshared" HOT 7
- pty.spawn'd sh shell doesn't exit via 'exit' or CTRL-D (^D) HOT 4
- ioctl tty TCSETSF unsupported. Python tty.setraw() fails HOT 3
- Support systemd IPAccounting or alternative HOT 1
- Unable to checkpoint containers started with `-nvproxy` HOT 7
- Running runsc with containerd and `--nvproxy=true` removes NVIDIA drivers from container in Kubernetes HOT 10
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from gvisor.