[lxc-devel] please open lxc-cgroup for unprivileged monitoring

Harald Dunkel harri at afaics.de
Tue Nov 8 05:43:17 UTC 2016


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hi Serge,

On 10/21/16 16:56, Serge E. Hallyn wrote:
> Quoting Harald Dunkel (harald.dunkel at aixigo.de):
>> On 10/20/2016 03:39 PM, Serge E. Hallyn wrote:
>>> On Wed, Oct 19, 2016 at 02:10:59PM +0200, Harald Dunkel wrote:
>>>> 
>>>> Following the api I am forced to use root permission or some hard-to-configure sudo constructs for monitoring. This is pretty painful.
>>>> 
>>>> Do you think this could be improved?
>>> 
>>> Not easily, because you won't be allowed to talk to the container control socket to ask it its cgroup.
>> 
>> I am not sure if I got this correctly, but don't you already need this string to talk with the container?
> 
> lxc-cgroup talks to the container to find out the cgroup it is running in.  There could for instance be several containers called 'c1' (in different lxcpaths), which could be running in cgroups c1, c1.0, and c1.1. And for each controller the cgroup name could be different.

Are there news about this?

Monitoring is highly important in my environment. I am desperate.


Regards
Harri

-----BEGIN PGP SIGNATURE-----

iQEcBAEBCAAGBQJYIWXvAAoJEAqeKp5m04HLb9wH/3yyOp+OZuyCQO1klj5jOyAl
8Ff/EIGJX+JcZktVfCA1bA7oKM9hdeqXJLT8xDiNbV0GA/B2Nsmfts/xKZcknBYs
l9rIhMRhxuF1a+XgXnJ1tp++9mOPyiW2vmyzkmMDGXF0PyayY7t4X9cTFOBGUPGA
cw/jAMnxY9Pc/YXJQC0nhm6Vp17TzidGW5tf5EMrMmVuR2Y7VqV+WCXhuwOhHUOE
XAjTEgvvbezZbZAADKeZFzPXYUoveFm/PMMWN6VzEup0GAnPxYNW1kUXF12/zTyL
m+/Oc81AUIUP4NskeNU1V/dEoersS05/uuNrLeYWgPls+3DMF43d45fjy7ZyyUQ=
=tJbI
-----END PGP SIGNATURE-----


More information about the lxc-devel mailing list