[Bug 1418279] Re: Automount NFSv4 doesn't work
Jens Elkner
1418279 at bugs.launchpad.net
Tue Jun 5 06:29:35 UTC 2018
Hmmm, not sure what "privileged container" means. Most machines are on xenial now and use
lxc.aa_profile = lxc-container-default-cgns-with-mounting
if this is the question.
This way mounting manually as well as automatically via automount works,
but mounting something via the '-hosts' builtin map still does not work.
E.g.:
> df -h
...
software:/export/sfw/share 16T 5.4G 16T 1% /local/share
...
> ls -al /net/software/export/sfw/share
ls: cannot access '/net/software/export/sfw/share': No such file or directory
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to autofs in Ubuntu.
https://bugs.launchpad.net/bugs/1418279
Title:
Automount NFSv4 doesn't work
Status in autofs package in Ubuntu:
Incomplete
Bug description:
I'm trying to use NFSv4 automount within an lxc container, however,
it doesn't work (it works for Solaris zones, so that's not an server
issue).
> cd /net/pkg/<TAB>
/net/pkg/ not found
> cat /etc/auto.master
/net -hosts
+dir:/etc/auto.master.d
+auto.master
The following log message makes me suspicious (comes 3-4 times):
[Feb 5 01:51] audit: type=1400 audit(1423099036.365:94): apparmor="DENIED" operation="mount" info="failed flags match" error=-13 profile="lxc-container-default" name="/tmp/autoHBYlmU/" pid=27748 comm="mount" srcname="/tmp/autogYuIlN/" flags="rw, bind"
But AFAICS rw,bind is allowed:
>cat /etc/apparmor.d/lxc/lxc-default
profile lxc-container-default flags=(attach_disconnected,mediate_deleted) {
deny mount fstype=devpts,
mount options=(rw, rbind),
mount fstype=nfs,
mount fstype=nfs4,
mount fstype=rpc_pipefs,
mount fstype=autofs,
}
That's the profile in the global/parent zone used by all our containers. So not sure, whether it is actually a NFSv4 or apparmor bug ...
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/autofs/+bug/1418279/+subscriptions
More information about the foundations-bugs
mailing list