Red Hat Bugzilla – Bug 1272143
Can't start containers that use supplemental groups but lack /etc/groups
Last modified: 2016-05-12 11:16:52 EDT
+++ This bug was initially created as a clone of Bug #1270529 +++ Description of problem: Docker can't start containers that use supplemental groups but do not have an /etc/groups file in their filesystem. The bug has been fixed in runc: https://github.com/opencontainers/runc/pull/313 And there is a patch for the Red Hat docker: https://github.com/rhatdan/docker/pull/127 Version-Release number of selected component (if applicable): 1.8 How reproducible: Create a busybox container and set supplemental groups on it: docker run --group-add=[123] -it busybox id -G Actual results: Container fails Expected results: Container starts and prints '123' --- Additional comment from Fedora Update System on 2015-10-15 09:36:46 CDT --- docker-io-1.8.2-2.gitcb216be.fc21 has been submitted as an update to Fedora 21. https://bodhi.fedoraproject.org/updates/FEDORA-2015-891d60ea2b
In docker-1.8.2-7.el7.x86_64, # docker run --group-add=123 -it busybox id -G 0 10 123 move to verified
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHSA-2016-1034.html