Bug 1468249 - [docker] Enable knob /proc/sys/fs/may_detach_mounts upon installation
Summary: [docker] Enable knob /proc/sys/fs/may_detach_mounts upon installation
Keywords:
Status: VERIFIED
Alias: None
Product: Red Hat Enterprise Linux 7
Classification: Red Hat
Component: docker
Version: 7.4
Hardware: Unspecified
OS: Unspecified
medium
medium
Target Milestone: rc
: ---
Assignee: Lokesh Mandvekar
QA Contact: atomic-bugs@redhat.com
URL:
Whiteboard:
Depends On: 1441737
Blocks: 1441743 1542672
TreeView+ depends on / blocked
 
Reported: 2017-07-06 13:03 UTC by Vivek Goyal
Modified: 2019-05-01 21:54 UTC (History)
8 users (show)

Fixed In Version: docker-1.12.6-41.1.gitf55a118.el7
Doc Type: If docs needed, set a value
Doc Text:
Clone Of: 1441737
Environment:
Last Closed:


Attachments (Terms of Use)

Comment 2 Vivek Goyal 2017-07-06 13:09:23 UTC
runc package drops following file.

/usr/lib/sysctl.d/99-containers.conf

And enables /proc/sys/fs/may_detach_mounts

We need this for docker as well.

By default installing docker does not install runc so this does not get enabled. 

We have two options.

- Either drop similar config file drom docker package.
- Or pull in runc when installing docker.

Hmmm..., may be first one is little light weight solution. So how about dropping another file from docker package says /usr/lib/sysctl.d/99-docker.conf

Comment 3 Vivek Goyal 2017-07-06 13:11:04 UTC
Lokesh, will you be able to take care of this please.

Comment 4 Ed Santiago 2017-07-06 19:20:29 UTC
Confirmed:

   # cat /proc/sys/fs/may_detach_mounts
   0

   # yum install docker
   ...
   Installed:
     docker.x86_64 2:1.12.6-41.1.gitf55a118.el7
   ...
   # cat /proc/sys/fs/may_detach_mounts
   1
   # rpm -q runc
   package runc is not installed


Note You need to log in before you can comment on or make changes to this bug.