[PVE-User] Bullseye LXC and logrotate...

Stefan Radman stefan.radman at me.com
Thu Oct 28 16:03:08 CEST 2021


Hi Marco

Here is what Google turned up for me.

[SOLVED] logrotate issue in buster lxc <https://forum.proxmox.com/threads/logrotate-issue-in-buster-lxc.56726/>
https://forum.proxmox.com/threads/logrotate-issue-in-buster-lxc.56726/ <https://forum.proxmox.com/threads/logrotate-issue-in-buster-lxc.56726/>

Turning on nesting seems to be one of the proposed solutions.

Stefan

> On Oct 28, 2021, at 12:36, Marco Gaiarin <gaio at lilliput.linux.it> wrote:
> 
> 
> Setup a pretty standard LXC container on bullseye, on a PVE7 server.
> 
> Every time logrotate run on LXC i got on LXC:
> 
> Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed to set up mount namespacing: /run/systemd/unit-root/proc: Permission denied
> Oct 28 00:00:59 vbaculaacpn1 systemd[106367]: logrotate.service: Failed at step NAMESPACE spawning /usr/sbin/logrotate: Permission denied
> Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Main process exited, code=exited, status=226/NAMESPACE
> Oct 28 00:00:59 vbaculaacpn1 systemd[1]: logrotate.service: Failed with result 'exit-code'.
> Oct 28 00:00:59 vbaculaacpn1 systemd[1]: Failed to start Rotate log files.
> 
> And on PVE:
> 
> Oct 28 00:00:59 beppe kernel: [280466.359176] audit: type=1400 audit(1635372059.192:31): apparmor="DENIED" operation="mount" info="failed flags match" error=-13 profile="lxc-102_</var/lib/lxc>" name="/run/systemd/unit-root/proc/" pid=3059401 comm="(ogrotate)" fstype="proc" srcname="proc" flags="rw, nosuid, nodev, noexec"
> 
> 
> ?! I've tried to google around a bit, but found nothing.
> 
> 
> Thanks.
> 
> -- 
>  Alla fiera dell'est, per due soldi
>  un topolino mio padre compro`				(A. Branduardi)
> 
> 
> 
> _______________________________________________
> pve-user mailing list
> pve-user at lists.proxmox.com
> https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user
> 




More information about the pve-user mailing list