[PVE-User] Bullseye LXC and logrotate...
Marco Gaiarin
gaio at lilliput.linux.it
Thu Oct 28 12:36:09 CEST 2021
Setup a pretty standard LXC container on bullseye, on a PVE7 server.
Every time logrotate run on LXC i got on LXC:
Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed to set up mount namespacing: /run/systemd/unit-root/proc: Permission denied
Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed at step NAMESPACE spawning /usr/sbin/logrotate: Permission denied
Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Main process exited, code=exited, status=226/NAMESPACE
Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Failed with result 'exit-code'.
Oct 28 00:00:59 vbaculaacpn1 systemd[1]: Failed to start Rotate log files.
And on PVE:
Oct 28 00:00:59 beppe kernel: [280466.359176] audit: type=1400 audit(1635372059.192:31): apparmor="DENIED" operation="mount" info="failed flags match" error=-13 profile="lxc-102_</var/lib/lxc>" name="/run/systemd/unit-root/proc/" pid=3059401 comm="(ogrotate)" fstype="proc" srcname="proc" flags="rw, nosuid, nodev, noexec"
?! I've tried to google around a bit, but found nothing.
Thanks.
--
Alla fiera dell'est, per due soldi
un topolino mio padre compro` (A. Branduardi)
More information about the pve-user
mailing list