Strange SSH issue on LXC

sahostking

Renowned Member
We converted CentOS 6 OpenVZ containers a few months back to LXC via proxmox.

In doing so we got everthing to work.

Now cpanel recommends the following be added so crons, etc. work well:
lxc.apparmor.profile: unconfined

We did this on all the containers that were done but when we try to SSH we cant as it retuned:
Server refused to allocate pty

Note /etc/rc.sysinit change was done on these VPS servers and rebooted already aswell as the following changes:
https://github.com/jazzl0ver/lxc-centos

If we remove the line "lxc.apparmor.profile: unconfined" from the conf SSH works but things like wordpress crontjobs etc. do not.

Any ideas?
 
running containers without apparmor confinement is not recommended for security reasons. presumably (based on your mention of cpanel) these are containers which are used / managed by your customers? if so this is not a good idea at all. if specific tools run into issues because they attempt do do things which are forbidden by the profile, you need to evaluate whether it is safe to adapt the profile to allow them or not.
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!