Recent content by omgs

  1. O

    Iptables NAT not working from vmbr with bridged port

    You didn't post any of your NAT settings. First, check that all routing works ok prior to being natted, including what you claim not working. Of course, check ip_forwarding is enabled. And check things that should NOT be natted, but forwarded.
  2. O

    Accessing files from Host in CT

    I have exactly the same case as you, but I get the same newuidmap error. I think the /etc/subuid and /etc/subgid must have more than the root:33:1 line that I'm missing. Can you (or anybody else) post if this is wrong and the missing contents? Thanks in advance.
  3. O

    Shared folders between host and container

    No luck with that method. I've tried something different. I've just assigned at the host the user 100000 and the group 102120 to the shared dir and set permissions accordingly. It's been necessary to add both full uid and gid mappings in the config file, like this: lxc.idmap: u 0 100000 65536...
  4. O

    Shared folders between host and container

    Ok. I think that it's the same using 1005 than 2120, so I've done this: # grep lxc 120.conf lxc.idmap: u 2120 2120 1 lxc.idmap: g 2120 2120 1 # cat subuid root:2120:1 # cat subgid root:2120:1 But now I get this error: # lxc-start -F -n 120 lxc-start: 120: conf.c: chown_mapped_root: 2902...
  5. O

    Shared folders between host and container

    Surely there's some silly concept I'm misunderstanding, but I'm unable to find out what I'm doing wrong. In my specific case, I just need to preserve host gid 2120 to the same gid in the container . Do I need to remap *all* uids and gids? What is mandatory for /etc/subuid and /etc/subgid, and...
  6. O

    Shared folders between host and container

    Yes, I realized that difference about replacing "=" with ":" , I guess it's proxmox software itself which does the changes automatically. I've tried rewriting with "=" but I still get the same result. Also, I'm not sure if I could do nothing about uid remapping, since I don't find it necessary...
  7. O

    Shared folders between host and container

    Thanks for your answer. Here is what I've tried: I just have reserved a gid in the host (2120) for the CTID 120 and I've just chgrped the folder. Then, I've set in the config file lxc.idmap: u 0 100000 65535 lxc.idmap: g 0 100000 2120 lxc.idmap: g 2120 2120 1 lxc.idmap: g 2121 102121 63415...
  8. O

    Shared folders between host and container

    Hi. I read this and there's something that I'm unable to understand. In an unprivileged container, I have a bind mount. From the host, I don't mind the uid/gid (it's a local btrfs filesystem), but I just want the root user in the container to be able to manage the shared tree for storing...
  9. O

    Custom hook script specific for just a container

    Ok, but there's at least one problem: I have to back up that data (of course to another encrypted disk) and it's several hundreds GB, so I don't think a vm provides a real working solution with this scenario. And also there has to be a real simple solution for the current permissions issue...
  10. O

    Custom hook script specific for just a container

    What is your proposal? I'm open to any solution.
  11. O

    Custom hook script specific for just a container

    I'm aware I can do that at host level and by being root (or sudo), but it's for a user who has access to the guest via proxmox and tries to prevent that others can access to the data if the vm isn't "properly booted". The reason why is beyond, but take that someone steals the server from the...
  12. O

    Custom hook script specific for just a container

    Thanks, but I want to force to type the password via console at every reboot, for security reasons.
  13. O

    Custom hook script specific for just a container

    Thanks for your answer. It looks like it MUST be a perl script, because a bash script returns a error code 1. I run it from the terminal and prompts for password, but this doesn't happen in the console, what I need to do. I took the example with perl (I'm not good at perl) and I customized it...
  14. O

    Custom hook script specific for just a container

    Hi. I'm using Proxmox 6.1 with Debian buster as host (and as guest while this is possible). I use several containers and in one I need to have a crypted mount point (it could even be the whole container). So, I use a lvmthin for just the system and a non-lvmthin for the data, and this is what...

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!