[PVE-User] Bullseye LXC and logrotate...

Marco Gaiarin gaio at lilliput.linux.it
Thu Oct 28 12:36:09 CEST 2021


Setup a pretty standard LXC container on bullseye, on a PVE7 server.

Every time logrotate run on LXC i got on LXC:

 Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed to set up mount namespacing: /run/systemd/unit-root/proc: Permission denied
 Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed at step NAMESPACE spawning /usr/sbin/logrotate: Permission denied
 Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Main process exited, code=exited, status=226/NAMESPACE
 Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Failed with result 'exit-code'.
 Oct 28 00:00:59 vbaculaacpn1 systemd[1]: Failed to start Rotate log files.

And on PVE:

 Oct 28 00:00:59 beppe kernel: [280466.359176] audit: type=1400 audit(1635372059.192:31): apparmor="DENIED" operation="mount" info="failed flags match" error=-13 profile="lxc-102_</var/lib/lxc>" name="/run/systemd/unit-root/proc/" pid=3059401 comm="(ogrotate)" fstype="proc" srcname="proc" flags="rw, nosuid, nodev, noexec"


?! I've tried to google around a bit, but found nothing.


Thanks.

-- 
  Alla fiera dell'est, per due soldi
  un topolino mio padre compro`				(A. Branduardi)






More information about the pve-user mailing list