Merge pull request #2102 from devimc/topic/virtcontainers/fcFixSocketPerm

virtcontainers: change firecracker socket permissions
This commit is contained in:
Jose Carlos Venegas Munoz 2019-10-04 09:26:50 -05:00 committed by GitHub
commit 2591a1fb65
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -618,6 +618,11 @@ func (fc *firecracker) fcStartVM() error {
return err
}
// make sure 'others' don't have access to this socket
if err := os.Chmod(filepath.Join(fc.jailerRoot, defaultHybridVSocketName), 0640); err != nil {
return fmt.Errorf("Could not change socket permissions: %v", err)
}
fc.state.set(vmReady)
return nil
}