Red Hat Bugzilla – Bug 1031122
make /dev/net/tun available in a container
Last modified: 2014-06-05 15:06:56 EDT
Description of problem:
The tun device is not available inside an lxc container created with the Fedora template.
It is very useful to be able to run a VPN inside a container, and it's not possible because the tun device is not available (and cannot be created using mknod). Some kinds of testing or some builds require a VPN.
Version-Release number of selected component (if applicable):
lxc-create -n MYCONTAINER -t fedora -B none
Steps to Reproduce:
1. lxc-create -n MYCONTAINER -t fedora -B none
2. run libvirt-insall for the container created above
3. see that /dev/net/tun is not available in the container and cannot be created with mkdod
If it's not acceptable to create the "tun" device by default, maybe provide an alternate template fedora-with-tun that can creates it by default, or
maybe clearly document how to do it..
This should be addressed in documentation. There are many examples of specific container requirements (such as requiring loop devices) that are not appropriate as a default in a generic container.
This issue has been addressed on the lxc-users mailing list and a number of forums...
It's not going to be something that will be added to the default configuration for all containers as it's more appropriately a container specific custom configuration option. Really not a bug. Please direct further queries to the lxc-users mailing list.