This repository has been archived by the owner on May 12, 2021. It is now read-only.
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
We support most of the namespaced sysctls today as we pass them to libcontainer as part of the OCI spec. libcontainer then applies them for the container after veryfing they can be applied. However, the verification fails for network related sysctls as libcontainer expects a separate network namespace for network sysctls. This check fails for us as we create network namspace on the host side. To fix these, apply the network sysctls manually and purge them from the spec, leaving other sysctls to be applied by libcontainer. Fixes #472 Signed-off-by: Archana Shinde <archana.m.shinde@intel.com>
- Loading branch information