Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[PRoot]: carry some patches #15

Closed
jessfraz opened this issue Feb 20, 2018 · 4 comments
Closed

[PRoot]: carry some patches #15

jessfraz opened this issue Feb 20, 2018 · 4 comments

Comments

@jessfraz
Copy link
Collaborator

see: https://github.com/AkihiroSuda/runrootless

and xattrs for rootless

@jessfraz jessfraz changed the title [proot]: carry some patches [PRroot]: carry some patches Feb 20, 2018
@jessfraz jessfraz changed the title [PRroot]: carry some patches [PRoot]: carry some patches Feb 20, 2018
@AkihiroSuda
Copy link
Collaborator

PRoot is currently slow because seccomp acceleration has been broken with recent kernels.
(Tracked in proot-me/proot#130 but seems still broken now)

So I'd suggest using rootless runc with SUID newuidmap tools.
(It requires my several PRs. review is welcome 🐧 https://github.com/opencontainers/runc/pulls?q=is%3Apr+is%3Aopen+label%3Arootless-containers)

At least, PRoot should be only enabled for apt/apk/yum commands.

@AkihiroSuda
Copy link
Collaborator

cc @cyphar

@AkihiroSuda
Copy link
Collaborator

FYI here is some benchmark result of PRoot https://github.com/AkihiroSuda/runrootless/issues/14

@jessfraz
Copy link
Collaborator Author

oh cool thanks so much for the info!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants