Commit Graph

6355 Commits

Author SHA1 Message Date
KATOH Yasufumi
35a92cd7af doc: Update Japanese lxc-ls(1)
add "--defined" option

Signed-off-by: KATOH Yasufumi <karma@jazz.email.ne.jp>
2017-07-11 17:31:20 +09:00
KATOH Yasufumi
e71b47b239 doc: Update Japanese lxc.containers.conf(5)
Follow updates of configuration keys:
* Delete lxc.kmsg (commit 26a38fb)
* lxc.console -> lxc.console.path (commit 3aed493)
* lxc.mount -> lxc.mount.fstab (commit 47148e9)
* lxc.net.ipv{4,6} -> lxc.net.ipv{4,6}.address (commit 9ff60df, 2e44ae2)
* lxc.tty -> lxc.tty.max, lxc.devttydir -> lxc.tty.dir (commit fe1c588)
* lxc.pts -> lxc.pty.max (commit 232763)

Signed-off-by: KATOH Yasufumi <karma@jazz.email.ne.jp>
2017-07-11 17:22:46 +09:00
Long Wang
6a628f4a1e cgfsng: only output debug info when we set cgroup data
Only output debug info `cgroup 'xxxx' set to 'yyyy'` when we set
cgroup data.

Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-11 16:03:45 +08:00
Stéphane Graber
cc58d0e234
Fix syntax error in lxc-download
Signed-off-by: Stéphane Graber <stgraber@ubuntu.com>
2017-07-11 02:58:56 -04:00
William Gathoye
3f7be9d079 Sanitize lxc-download script with shellcheck
Fix potential CVE when using spaces in LXC names

Signed-off-by: William Gathoye <william@gathoye.be>
2017-07-10 22:23:09 -05:00
Christian Brauner
ed38feee45 Merge pull request #1690 from brauner/2017-07-10/lifeng68-Modify_fds
start: dup std{in,out,err} to pty slave
2017-07-10 12:25:05 +02:00
Christian Brauner
bbbf65ee77
utils: set_stdfds()
non-functional changes

Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-10 11:46:54 +02:00
Li Feng
c5b93afba1
start: dup std{in,out,err} to pty slave
In the case the container has a console with a valid slave pty file descriptor
we duplicate std{in,out,err} to the slave file descriptor so console logging
works correctly. When the container does not have a valid slave pty file
descriptor for its console and is started daemonized we should dup to
/dev/null.

Closes #1646.

Signed-off-by: Li Feng <lifeng68@huawei.com>
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-10 11:41:02 +02:00
Christian Brauner
1a6cb1cea4 Merge pull request #1687 from 0x0916/2017-07-09/delete-comments
delete comments
2017-07-09 11:48:53 +02:00
Serge Hallyn
74d2af40dd Merge pull request #1688 from 0x0916/2017-07-09/use-access
utils: use access instead of stat
2017-07-09 01:08:47 +00:00
Long Wang
e57cd7e9bb
utils: use access instead of stat
we shoud test whether the file exists and grants
execute permissions.

Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-09 08:38:13 +08:00
Long Wang
1e8cfdf6f9
commonds: fix typo
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-09 08:10:34 +08:00
Long Wang
2945ea9778
commands: delete meaningless comments
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-09 08:08:54 +08:00
Serge Hallyn
3f0af363e4 Merge pull request #1659 from brauner/2017-06-28/do_not_use_cmd_socket_on_daemonized_start
start: use separate socket on daemonized start
2017-07-08 23:44:06 +00:00
Christian Brauner
ee8377bd91
commands: handle EINTR
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-09 00:14:47 +02:00
Christian Brauner
c01c2be6e8
commands: abstract cmd socket handling + logging
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-09 00:14:46 +02:00
Christian Brauner
86a78f1733
commands: add missing translation
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-09 00:14:46 +02:00
Christian Brauner
bbf5cf35a3
commands: mv lxc_make_abstract_socket_name()
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-09 00:14:46 +02:00
Christian Brauner
92e3501832
commands: make state server interface flexible
This adds a little more flexibility to the state server. The idea is to have a
command socket function "lxc_cmd_add_state_client()" whose only task is to add
a new state client to the container's in-memory handler. This function returns
either the state of the container if it is already in the requested state or it
will return the newly registered client's fd in one of its arguments to the
caller. We then provide a separate helper function "lxc_cmd_sock_rcv_state()"
which can be passed the returned client fd and listens on the fd for the
requested state.
This is useful when we want to first register a client, then send a signal to
the container and wait for a state. This ensure that the client fd is
registered before the signal can have any effect and can e.g. be used to catch
something like the "STOPPING" state that is very ephemeral.

Additionally we provide a convenience function "lxc_cmd_sock_get_state()" which
combines both tasks and is used in e.g. "lxc_wait()".

Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-09 00:14:46 +02:00
Christian Brauner
54446942fe
commands: rename to lxc_cmd_add_state_client()
The new wait commands API is not yet stable so this change is ok.

Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:19 +02:00
Christian Brauner
8130d8646d
lxc static init: report exec*() failure
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:19 +02:00
Christian Brauner
3df9fa8211
test: shortlived daemonized containers
Add a test to see if we can start daemonized containers that have a very
short-lived init process. The point of this is to see whether we can correctly
retrieve the state.

Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:19 +02:00
Christian Brauner
7cb19d44a1
lxccontainer: non-functional changes
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:19 +02:00
Christian Brauner
a6b6ad7bbc
lxccontainer: make sure memory is free()ed
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:18 +02:00
Christian Brauner
5e5576a4ef
start: use separate socket on daemonized start
Since we killed lxc-monitord we rely on the container's command socket to wait
for the container. This doesn't work nicely on daemonized startup since a
container's init process might be something that is so short-lived that we
won't even be able to add a state client before the mainloop closes. But the
container might still have been RUNNING and executed the init binary correctly.
In this case we would erroneously report that the container failed to start
when it actually started just fine.
This commit ensures that we really all cases where the container successfully
ran by switching to a short-lived per-container anonymous unix socket pair that
uses credentials to pass container states around. It is immediately closed once
the container has started successfully.
This should also make daemonized container start way more robust since we don't
rely on the command socket handler to be running.

For the experienced developer: Yes, I did think about utilizing the command
socket directly for this. The problem is that when the mainloop starts it may
end up end accept()ing the connection that we want
do_wait_on_daemonized_start() to accept() so this won't work and might cause us
to hang indefinitely. The same problem arises when the container fails to start
before the mainloop is created. In this case we would hang indefinitely as
well.

Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:18 +02:00
Christian Brauner
47a46cf1d2
start: generalize lxc_check_inherited()
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:18 +02:00
Christian Brauner
7935833c23
utils: lxc_make_abstract_socket_name()
Signed-off-by: Christian Brauner <christian.brauner@ubuntu.com>
2017-07-08 23:50:16 +02:00
Serge Hallyn
616e0593cd Merge pull request #1665 from brauner/2017-07-01/deprecate_lxc_rootfs_backend
prepare for LXC 2.1
2017-07-08 21:25:17 +00:00
Christian Brauner
4ea447b752 Merge pull request #1683 from 0x0916/2017-07-08/remove-unlink
af_unix: remove unlink operation
2017-07-08 16:56:34 +02:00
Christian Brauner
186f27db32 Merge pull request #1684 from 0x0916/2017-07-08/remove-dead-code
state: remove lxc_rmstate declaration
2017-07-08 08:16:50 +02:00
Christian Brauner
022f1ba31b Merge pull request #1685 from 0x0916/2017-07-08/remove-workaround-code
lxc_abstract_unix_connect: remove the workaround-code
2017-07-08 08:16:43 +02:00
Christian Brauner
4359b5a962 Merge pull request #1686 from 0x0916/2017-07-08/close-parent-end-after-fork
utils: close parent end in child process after fork
2017-07-08 08:16:35 +02:00
Long Wang
6e67032161
utils: close parent end in child process after fork
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-08 13:27:16 +08:00
Long Wang
b34cf53b7d
lxc_abstract_unix_connect: remove the workaround-code
commit bdb3f44147 says that we may undo
the change in august 2014.

I think that it is time to do that.

Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-08 10:52:17 +08:00
Long Wang
5b6235cd83
state: remove lxc_rmstate declaration
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-08 10:40:41 +08:00
Long Wang
42c6141c5a
af_unix: remove unlink operation
It is not necessary to unlink the abstract socket pathname when
we have finished using the socket. The abstract name is automatically
removed when the socket is closed.

Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-08 10:29:57 +08:00
Stéphane Graber
996b20c4e2 Merge pull request #1682 from brauner/2017-07-07/enable_apparmor_namespaces
Allow containers to start in AppArmor namespaces
2017-07-07 17:43:19 -04:00
Frédéric Dalleau
d680929bbc Allow containers to start in AppArmor namespaces
This patch allows users to start containers in AppArmor namespaces.
Users can define their own profiles for their containers, but
lxc-start must be allowed to change to a namespace.

A container configuration file can wrap a container in an AppArmor
profile using lxc.aa_profile.

A process in an AppArmor namespace is restricted to view
or manage only the profiles belonging to this namespace, as if no
other profiles existed. A namespace can be created as follow:
sudo mkdir /sys/kernel/security/apparmor/policy/namespaces/$NAMESPACE

AppArmor can stack profiles so that the contained process is bound
by the intersection of all profiles of the stack. This is achieved
using the '//&' operator as follow:

lxc.aa_profile = $PROFILE//&:$NAMESPACE://unconfined

In this case, even the guest process appears unconfined in the
namespace, it is still confined by $PROFILE.

A guest allowed to access "/sys/kernel/security/apparmor/** rwklix,"
will be able to manage its own profile set, while still being
enclosed in the topmost profile $PROFILE:

Different guests can be assigned the same namespace or different
namespaces. In the first case, they will share their profiles.
In the second case, they will have distinct sets of profiles.

This is validated on privileged containers.

Signed-off-by: Frédéric Dalleau <frederic.dalleau@collabora.com>
2017-07-07 12:33:38 +02:00
Christian Brauner
6262244de9 Merge pull request #1675 from 0x0916/2017-07-05/lxc-init
lxc-init: some enhancements
2017-07-06 15:31:37 +02:00
Stéphane Graber
6da35cc1b2 Merge pull request #1673 from brauner/2017-07-04/update_readme
README: update
2017-07-05 12:27:28 -04:00
Christian Brauner
20069fa3ee Merge pull request #1677 from 0x0916/2017-07-05/fix-parse-config-file
tests: delete the intermediate file and directory.
2017-07-05 11:50:01 +02:00
Christian Brauner
d552fc35c9 Merge pull request #1676 from 0x0916/2017-07-05/fix-headers
fix headers
2017-07-05 11:32:14 +02:00
Long Wang
a6638e2e98 tests: remove temp lxcpath for attach testcase
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 15:39:02 +08:00
Long Wang
df24d43699 tests: remove the temp container directory
c->destory() will not remove the temp container directory.
This patch fix that.

Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 15:17:58 +08:00
Long Wang
6cd5db20bc tests: create temp file before lxc_container_new
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 14:51:03 +08:00
Long Wang
3705503ac3 use same ifndef/define format for all headers
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 14:06:01 +08:00
Long Wang
74a99f40b3 caps.h: move ifndef/define to the top
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 12:19:37 +08:00
Long Wang
16affc24a5 lxc-init: move initialization of act to outside of the loop
Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 12:13:09 +08:00
Long Wang
1574fc2495 lxc-init: adjust include statements
* Use `#include <lxc/lxccontaienr.h>` style for exported haeders.
* remove used header `caps.h`

Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 12:12:38 +08:00
Long Wang
1bfb12006f lxc-init: non-functional changes
This patch mainly update the message format to:

* upper the first letter
* end without a dot

all changes are relate to `lxc-init`

Signed-off-by: Long Wang <w@laoqinren.net>
2017-07-05 12:12:13 +08:00