unprivileded

  1. G

    Mount CIFS share to a non-privileged container

    Hi folks, I am attempting to add access to a NAS shared disk that holds all my books to a Caliber-web CT (from promox-helper-scripts). Here is what I have done on the PVE hosting the ct: added a .credentials file with login info added //192.168.NN.NN/Books /mnt/nas/media cifs...
  2. M

    [SOLVED] LXC with /dev/ppp

    Hi all, I would like to know how should I setup the following PVE Host instructions to be automatically fired/ran at PVE Host boot time? chown 100000:100000 /dev/ppp What's the best practice way to achieve this? Let me know, Thanks, m.
  3. Z

    Can't start privoxy in an unprivileged container

    Hello everybody! Does anybody knows what is necessary in order to run privoxy inside an unprivileged container? I always get: Jul 29 23:43:51 i2pd-pve systemd-logind[84]: New seat seat0. Jul 29 23:43:56 i2pd-pve login[120]: pam_unix(login:session): session opened for user root(uid=0) by...
  4. M

    Apparmor permission issues after switching from unprivileged to privileged LXC

    I was running an unprivileged LXC and converted it to a privileged one (backed it up and then restored with it set to privileged) and now I have issues with Apparmor. My main problem is starting a Docker container ~/pihole$ docker-compose up Creating network "pihole_default" with the default...
  5. M

    newuidmap: uid range [1100-1101) -> [1100-1101) not allowed

    Hi Community, I'm trying to configure my unprivileged container with id mapping (PVE 6.2). Following the documentation here : https://pve.proxmox.com/wiki/Unprivileged_LXC_containers, my container failed to start with the error below : Is there a range that we cannot map ? In my container...
  6. T

    [SOLVED] Can´t start unprivileged container

    I can´t start a (restored) unprivileged container. If I create a new unprivileged container I can´t start it also. Apr 13 13:58:51 pve ovs-vsctl[538510]: ovs|00002|db_ctl_base|ERR|unix:/var/run/openvswitch/db.sock: database connection failed (No such file or directory) Apr 13 13:58:51 pve...
  7. I

    fstrim doesn't work in containers (any OS) - workarounds?

    Hi again I've been trying all day to get fstrim working inside unprivileged LXC containers with no luck. Initially I thought it was just a Debian/Ubuntu issue, but I've tried multiple OS templates and it always results in: FITRIM ioctl failed: Operation not permitted. FYI it works fine in...
  8. G

    Need extra range for uid in unprivileged lxc containers

    Hi, I need to allow some bigger uid than the default one (65536) in LXC containers (eg. mine is >72000 and new users are >120000 in the LDAP). As i understand lxc.idmap definition (in UID MAPPINGS section of linux.container manpage), these lines (in /etc/pve/local/lxc/2100.conf file) should...
  9. T

    Not Able to Create Unprivileged LXC container

    Hello, I already have multiple container running in privileged mode. I discovered the way to migrate into unprivileged with the backup and restore trick. I have existing hand made template for debian 8 and 9. I'm not able to create CT in unprivileged but backup and restore trick still...