LFS253 Lab 3.2
when i run
student@ubuntu:~$ lxc-create --template download --name unpriv-cont-user
Out put is:
Setting up the GPG keyring
ERROR: Unable to fetch GPG key from keyserver
lxc-create: unpriv-cont-user: lxccontainer.c: create_run_template: 1616 Failed to create container from template
lxc-create: unpriv-cont-user: tools/lxc_create.c: main: 319 Failed to create container unpriv-cont-user
can someone offer some hingts on where i went wrong
Answers
-
found this thread: https://forum.linuxfoundation.org/discussion/857326/lxc-create-fails-to-create-container
So I ran:
setfacl -m u:100000:x ~/.localthen ran the command
sudo sudo lxc-create -t download --name unpriv-cont-user -- -d ubuntu -r xenial -a amd64
output:
lxc-create: unpriv-cont-user: tools/lxc_create.c: main: 266 Container already existsso then i went on with the lab and ran:
sudo lxc-start -n unpriv-cont-user -d
output:
lxc-start: unpriv-cont-user: lxccontainer.c: do_lxcapi_start: 897 Ongoing container creation detected
lxc-start: unpriv-cont-user: tools/lxc_start.c: main: 308 The container failed to start
lxc-start: unpriv-cont-user: tools/lxc_start.c: main: 311 To get more details, run the container in foreground mode
lxc-start: unpriv-cont-user: tools/lxc_start.c: main: 313 Additional information can be obtained by setting the --logfile and --logpriority options0 -
Hi @benjakh,
Instructions to set the access control list can be found in the lab exercise as well. The lab guide includes additional notes about optional keyserver usage, and an alternative create command. However, what causes most issues are the actual uid and gid used in commands.
To validate that we have all correct values set, please provide the output of the following commands:$ id$ cat /etc/subuid$ cat /etc/subgid$ cat /etc/lxc/lxc-usernet$ ls -la ~/.config/lxc/default.conf$ cat ~/.config/lxc/default.conf$ getfacl ~/.localRegards,
-Chris1 -
$id
uid=1000(benja) gid=1000(benja) groups=1000(benja),4(adm),24(cdrom),27(sudo),30(dip),46(plugdev),116(lxd)$ cat /etc/subuid
benja:100000:65536$ cat /etc/subgid
$: command not found$ cat /etc/subgid
benja:100000:65536
benja@testServer:~/LFSplayground$ cat /etc/lxc/lxc-usernetUSERNAME TYPE BRIDGE COUNT
benja veth lxcbr0 10
$ ls -la ~/.config/lxc/default.conf
-rw-rw-r-- 1 benja benja 162 Apr 20 00:51 /home/benja/.config/lxc/default.conf$ cat ~/.config/lxc/default.conf
lxc.net.0.type = veth
lxc.net.0.link = lxcbr0
lxc.net.0.flags = up
lxc.net.0.hwaddr = 00:16:3e:xx:xx:xx
lsc.idmap = u 0 231072 65536
lsc.idmap = g 0 231072 65536$ getfacl ~/.local
getfacl: Removing leading '/' from absolute path namesfile: home/benja/.local
owner: root
group: root
user::rwx
user:100000:--x
user:231072:--x
group::r-x
mask::r-x
other::r-x********0 -
Thank you for the detailed output, @benjakh.
As suspected, there are inconsistencies in the UID and GID values used to configure the system. Please revisit all the post lxc installation steps in the lab guide, steps that configure the system and ensure that the proper UID and GID values are used. Reading carefully exercise descriptions should help in picking the correct values for your environment. After all, there seems to be only one set of UID and GID on your system, so the task should be pretty straight forward.
I would also recommend ensuring that no typos are included in the default.conf file, as it seems to be the case in the output above.
Regards,
-Chris0 -
Thanks for taking the time to answer my question
0 -
Thanks again, after reviewing the instructions, i am able to see where i mess up
0 -
I have another error with this lab related to the keyserver. When I run:
lxc-create --name unpriv-cont-user --template download --keyserver keyserver.ubuntu.com
I get:
lxc-create: unrecognized option '--keyserver'
0 -
Hi @dmwpepper,
An additional double-dash is expected:
lxc-create --name unpriv-cont-user --template download -- --keyserver keyserver.ubuntu.comRegards,
-Chris0 -
Im having an issue with this lab as well at the same or similar point Whenever i try to start the unpriv-cont-user i get an error running it in the foreground for more logs i got the following
student@ubuntu:~$ lxc-start -n unpriv-cont-user -F lxc-start: unpriv-cont-user: network.c: lxc_create_network_unpriv_exec: 2976 lxc-user-nic failed to configure requested network: cmd/lxc_user_nic.c: 1206: main: Quota reached lxc-start: unpriv-cont-user: start.c: lxc_spawn: 1843 Failed to create the network lxc-start: unpriv-cont-user: start.c: __lxc_start: 2074 Failed to spawn container "unpriv-cont-user" lxc-start: unpriv-cont-user: tools/lxc_start.c: main: 306 The container failed to start lxc-start: unpriv-cont-user: tools/lxc_start.c: main: 311 Additional information can be obtained by setting the --logfile and --logpriority options
checking the cat's listed earlier in this thread i dont see any typos or mistakes with my uid or gid
student@ubuntu:~$ id uid=1001(student) gid=1002(student) groups=1002(student),4(adm),20(dialout),24(cdrom),25(floppy),29(audio),30(dip),44(video),46(plugdev),118(netdev),119(lxd),1000(ubuntu),1001(google-sudoers) student@ubuntu:~$ cat /etc/subuid ubuntu:100000:65536 student:165536:65536 student@ubuntu:~$ cat /etc/subgid ubuntu:100000:65536 student:165536:65536 student@ubuntu:~$ cat /etc/lxc/lxc-usernet # USERNAME TYPE BRIDGE COUNT student vethc lxcbr0 10 student@ubuntu:~$ ls -la ~/.config/lxc/default.conf -rw-rw-r-- 1 student student 162 May 10 17:27 /home/student/.config/lxc/default.conf student@ubuntu:~$ cat ~/.config/lxc/default.conf lxc.net.0.type = veth lxc.net.0.link = lxcbr0 lxc.net.0.flags = up lxc.net.0.hwaddr = 00:16:3e:xx:xx:xx lxc.idmap = u 0 165536 65536 lxc.idmap = g 0 165536 65536 student@ubuntu:~$ getfacl ~/.local getfacl: Removing leading '/' from absolute path names # file: home/student/.local # owner: student # group: student user::rwx user:165536:--x group::r-x mask::r-x other::r-x
0 -
Hi @gfevans,
I would recommend fixing the typo in
/etc/lxc/lxc-usernetand then try again.Regards,
-Chris0
Categories
- All Categories
- 177 LFX Mentorship
- 177 LFX Mentorship: Linux Kernel
- 755 Linux Foundation IT Professional Programs
- 375 Cloud Engineer IT Professional Program
- 170 Advanced Cloud Engineer IT Professional Program
- 74 DevOps IT Professional Program - Discontinued
- 5 DevOps & GitOps IT Professional Program
- 100 Cloud Native Developer IT Professional Program
- 7.6K Training Courses & Learning Paths
- 2 AI & ML Training
- 1 Blockchain & Decentralized Identity Training
- 5 Cloud & Containers Training
- 1 Cybersecurity Training
- 2 DevOps & Site-Reliability Training
- 1 Linux Kernel Development Training
- 1 Networking Training
- 2 Open Source Best Practice Training
- 2 System Administration Training
- 1 System Engineering Training
- 1 Web & Application Development Training
- 795 Hardware
- 202 Drivers
- 68 I/O Devices
- 37 Monitors
- 95 Multimedia
- 173 Networking
- 91 Printers & Scanners
- 90 Storage
- 769 Linux Distributions
- 81 Debian
- 68 Fedora
- 22 Linux Mint
- 13 Mageia
- 24 openSUSE
- 150 Red Hat Enterprise
- 31 Slackware
- 13 SUSE Enterprise
- 356 Ubuntu
- 465 Linux System Administration
- 31 Cloud Computing
- 73 Command Line/Scripting
- Github systems admin projects
- 98 Linux Security
- 78 Network Management
- 101 System Management
- 46 Web Management
- 112 Mobile Computing
- 20 Android
- 77 Development
- 1.2K New to Linux
- 1K Getting Started with Linux
- 393 Off Topic
- 121 Introductions
- 182 Small Talk
- 29 Study Material
- 980 Programming and Development
- 310 Kernel Development
- 652 Software Development
- 995 Software
- 387 Applications
- 182 Command Line
- 5 Compiling/Installing
- 68 Games
- 317 Installation
- Archived
- 2 LFD140 Class Forum
- 1.4K LFS258 Class Forum
Upcoming Training
-
August 20, 2018
Kubernetes Administration (LFS458)
-
August 20, 2018
Linux System Administration (LFS301)
-
August 27, 2018
Open Source Virtualization (LFS462)
-
August 27, 2018
Linux Kernel Debugging and Security (LFD440)