- thois is my info of my container
Name: prueba2
Location: none
Remote: unix://
Architecture: x86_64
Created: 2019/04/01 11:47 UTC
Status: Running
Type: persistent
Profiles: default
Pid: 2645
Ips:
eth0: inet 10.142.118.237 vethADP8BM
eth0: inet6 fd42:3053:8b55:58c2:216:3eff:feed:6e27 vethADP8BM
eth0: inet6 fe80::216:3eff:feed:6e27 vethADP8BM
lo: inet 127.0.0.1
lo: inet6 ::1
lxdbr0: inet 10.245.84.1
lxdbr0: inet6 fd87:9585:53a:c557::1
lxdbr0: inet6 fe80::84da:a8ff:fea3:dfc7
Resources:
Processes: 35
CPU usage:
CPU usage (in seconds): 37
Memory usage:
Memory (current): 457.59MB
Memory (peak): 920.69MB
Network usage:
eth0:
Bytes received: 191.68MB
Bytes sent: 2.53MB
Packets received: 76644
Packets sent: 31911
lo:
Bytes received: 0B
Bytes sent: 0B
Packets received: 0
Packets sent: 0
lxdbr0:
Bytes received: 0B
Bytes sent: 1.68kB
Packets received: 0
Packets sent: 13
Do i need to do something more than setting the security.nesting to true ?
Tahnks in advance.
- And this is my lxc info:
config:
core.https_address: ‘[::]:8443’
core.trust_password: true
api_extensions:
-
storage_zfs_remove_snapshots
-
container_host_shutdown_timeout
-
container_stop_priority
-
container_syscall_filtering
-
auth_pki
-
container_last_used_at
-
etag
-
patch
-
usb_devices
-
https_allowed_credentials
-
image_compression_algorithm
-
directory_manipulation
-
container_cpu_time
-
storage_zfs_use_refquota
-
storage_lvm_mount_options
-
network
-
profile_usedby
-
container_push
-
container_exec_recording
-
certificate_update
-
container_exec_signal_handling
-
gpu_devices
-
container_image_properties
-
migration_progress
-
id_map
-
network_firewall_filtering
-
network_routes
-
storage
-
file_delete
-
file_append
-
network_dhcp_expiry
-
storage_lvm_vg_rename
-
storage_lvm_thinpool_rename
-
network_vlan
-
image_create_aliases
-
container_stateless_copy
-
container_only_migration
-
storage_zfs_clone_copy
-
unix_device_rename
-
storage_lvm_use_thinpool
-
storage_rsync_bwlimit
-
network_vxlan_interface
-
storage_btrfs_mount_options
-
entity_description
-
image_force_refresh
-
storage_lvm_lv_resizing
-
id_map_base
-
file_symlinks
-
container_push_target
-
network_vlan_physical
-
storage_images_delete
-
container_edit_metadata
-
container_snapshot_stateful_migration
-
storage_driver_ceph
-
storage_ceph_user_name
-
resource_limits
-
storage_volatile_initial_source
-
storage_ceph_force_osd_reuse
-
storage_block_filesystem_btrfs
-
resources
-
kernel_limits
-
storage_api_volume_rename
-
macaroon_authentication
-
network_sriov
-
console
-
restrict_devlxd
-
migration_pre_copy
-
infiniband
-
maas_network
-
devlxd_events
-
proxy
-
network_dhcp_gateway
-
file_get_symlink
-
network_leases
-
unix_device_hotplug
-
storage_api_local_volume_handling
-
operation_description
-
clustering
-
event_lifecycle
-
storage_api_remote_volume_handling
-
nvidia_runtime
-
container_mount_propagation
-
container_backup
-
devlxd_images
-
container_local_cross_pool_handling
-
proxy_unix
-
proxy_udp
-
clustering_join
-
proxy_tcp_udp_multi_port_handling
-
network_state
-
proxy_unix_dac_properties
-
container_protection_delete
-
unix_priv_drop
-
pprof_http
-
proxy_haproxy_protocol
-
network_hwaddr
-
proxy_nat
-
network_nat_order
-
container_full
-
candid_authentication
-
backup_compression
-
candid_config
-
nvidia_runtime_config
-
storage_api_volume_snapshots
-
storage_unmapped
-
projects
-
candid_config_key
-
network_vxlan_ttl
-
container_incremental_copy
-
usb_optional_vendorid
-
snapshot_scheduling
-
container_copy_project
-
clustering_server_address
-
clustering_image_replication
-
container_protection_shift
-
snapshot_expiry
-
container_backup_override_pool
-
snapshot_expiry_creation
api_status: stable
api_version: “1.0”
auth: trusted
public: false
auth_methods: -
tls
environment:
addresses:- 192.168.150.94:8443
- 10.222.234.1:8443
- 10.142.118.1:8443
- ‘[fd42:3053:8b55:58c2::1]:8443’
architectures: - x86_64
- i686
certificate: |
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
certificate_fingerprint: 3bac98398cfa886fc3e8a2652cf328a474c471c90b8c9d9cba2edd44b351e217
driver: lxc
driver_version: 3.1.0
kernel: Linux
kernel_architecture: x86_64
kernel_version: 4.15.0-46-generic
server: lxd
server_pid: 2019
server_version: “3.11”
storage: dir
storage_version: “1”
server_clustered: false
server_name: daniel-B250M-D3H
project: default
-
This the msg that i get when i am trying to start the nested container:
error: Error calling ‘lxd forkstart nested /var/lib/lxd/containers /var/log/lxd/nested/lxc.conf’: err='Failed to run: /usr/bin/lxd forkstart nested /var/lib/lxd/containers /var/log/lxd/nested/lxc.conf: ’
lxc 20190401120416.105 ERROR lxc_utils - utils.c:safe_mount:1739 - Operation not permitted - Failed to mount proc onto /usr/lib/x86_64-linux-gnu/lxc/proc
lxc 20190401120416.105 ERROR lxc_conf - conf.c:lxc_mount_auto_mounts:734 - Operation not permitted - error mounting proc on /usr/lib/x86_64-linux-gnu/lxc/proc flags 14
lxc 20190401120416.105 ERROR lxc_conf - conf.c:lxc_setup:4008 - failed to setup the automatic mounts for ‘nested’
lxc 20190401120416.105 ERROR lxc_start - start.c:do_start:811 - Failed to setup container “nested”.
lxc 20190401120416.105 ERROR lxc_sync - sync.c:__sync_wait:57 - An error occurred in another process (expected sequence number 3)
lxc 20190401120416.144 ERROR lxc_start - start.c:__lxc_start:1358 - Failed to spawn container “nested”.
lxc 20190401120416.714 ERROR lxc_conf - conf.c:run_buffer:416 - Script exited with status 1.
lxc 20190401120416.714 ERROR lxc_start - start.c:lxc_fini:546 - Failed to run lxc.hook.post-stop for container “nested”.