[lxc-devel] please open lxc-cgroup for unprivileged monitoring

Serge E. Hallyn serge at hallyn.com
Fri Oct 21 14:56:24 UTC 2016


Quoting Harald Dunkel (harald.dunkel at aixigo.de):
> On 10/20/2016 03:39 PM, Serge E. Hallyn wrote:
> > On Wed, Oct 19, 2016 at 02:10:59PM +0200, Harald Dunkel wrote:
> >>
> >> Following the api I am forced to use root permission or some
> >> hard-to-configure sudo constructs for monitoring. This is
> >> pretty painful.
> >>
> >> Do you think this could be improved?
> > 
> > Not easily, because you won't be allowed to talk to the container
> > control socket to ask it its cgroup.
> 
> I am not sure if I got this correctly, but don't you already need
> this string to talk with the container?

lxc-cgroup talks to the container to find out the cgroup it is running
in.  There could for instance be several containers called 'c1' (in
different lxcpaths), which could be running in cgroups c1, c1.0, and c1.1.
And for each controller the cgroup name could be different.


More information about the lxc-devel mailing list