From 8f967c929fccb4b932fba2110ac2c7f816883873 Mon Sep 17 00:00:00 2001 From: Dan Williams Date: Fri, 5 May 2017 23:31:21 -0500 Subject: [PATCH] hack/cluster: map /run/xtables.lock into containerized kubelet filesystem --- cluster/get-kube-local.sh | 1 + hack/local-up-cluster.sh | 1 + 2 files changed, 2 insertions(+) diff --git a/cluster/get-kube-local.sh b/cluster/get-kube-local.sh index b9f2e568e7a..a0aa7a9c2ff 100755 --- a/cluster/get-kube-local.sh +++ b/cluster/get-kube-local.sh @@ -62,6 +62,7 @@ function create_cluster { --volume=/var/lib/docker/:/var/lib/docker:rw \ --volume=/var/lib/kubelet/:/var/lib/kubelet:rw \ --volume=/var/run:/var/run:rw \ + --volume=/run/xtables.lock:/run/xtables.lock:rw \ --net=host \ --pid=host \ --privileged=true \ diff --git a/hack/local-up-cluster.sh b/hack/local-up-cluster.sh index 7ad21a1cd55..ee769b774b0 100755 --- a/hack/local-up-cluster.sh +++ b/hack/local-up-cluster.sh @@ -674,6 +674,7 @@ function start_kubelet { --volume=/var/lib/docker/:/var/lib/docker:ro \ --volume=/var/lib/kubelet/:/var/lib/kubelet:rw \ --volume=/dev:/dev \ + --volume=/run/xtables.lock:/run/xtables.lock:rw \ ${cred_bind} \ --net=host \ --privileged=true \