public inbox for pve-user@lists.proxmox.com
 help / color / mirror / Atom feed
* [PVE-User] unpriviliged lxc uid/gid mappings
@ 2021-04-19  0:53 Lindsay Mathieson
  0 siblings, 0 replies; 2+ messages in thread
From: Lindsay Mathieson @ 2021-04-19  0:53 UTC (permalink / raw)
  To: pve-user

I must say, I find the subject very confusing and difficult to parse. It 
seems very difficult to setup with multiple user and container mappings 
to maintain - I just setup 4 containers with 4 bind mounts each and 
after a lot of fiddling, got them working, but I'm not confident on 
maintenance for the future. I had to give up on the container that 
needed access to 2 USB tuners and a Intel QuickSync GPU (vaapi), ended 
up running that container privileged.


Is there any plans to simplify it for the future? I found the LXD (4.0?) 
system of raw.idmap settings much easier to setup, I was able to 
generically script that for containers.


Not complaining, I'm very happy with the overall setup I have at home - 
PX Media Server and a PBS Server, much easier to maintain than my old 
setup, and disaster recovery exists now :)

-- 
Lindsay




^ permalink raw reply	[flat|nested] 2+ messages in thread

* [PVE-User] unpriviliged lxc uid/gid mappings
@ 2021-04-19  0:52 Lindsay Mathieson
  0 siblings, 0 replies; 2+ messages in thread
From: Lindsay Mathieson @ 2021-04-19  0:52 UTC (permalink / raw)
  To: pve-user

I must say, I find the subject very confusing and difficult to parse. It 
seems very difficult to setup with multiple user and container mappings 
to maintain - I just setup 4 containers with 4 bind mounts each and 
after a lot of fiddling, got them working, but I'm not confident on 
maintenance for the future. I had to give up on the container that 
needed access to 2 USB tuners and a Intel QuickSync GPU (vaapi), ended 
up running that container privileged.


Is there any plans to simplify it for the future? I found the LXD (4.0?) 
system of raw.idmap settings much easier to setup, I was able to 
generically script that for containers.

-- 
Lindsay




^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2021-04-19  0:53 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2021-04-19  0:53 [PVE-User] unpriviliged lxc uid/gid mappings Lindsay Mathieson
  -- strict thread matches above, loose matches on Subject: below --
2021-04-19  0:52 Lindsay Mathieson

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
Service provided by Proxmox Server Solutions GmbH | Privacy | Legal