Justin Cormack
0ffc2867a9
Use hierarchy for memory cgroups
...
Container systems expect this...
Signed-off-by: Justin Cormack <justin.cormack@docker.com >
2017-04-10 14:36:06 +01:00
Justin Cormack
821fdaecc8
Remove SELinux setup until actually implemented
...
Signed-off-by: Justin Cormack <justin.cormack@docker.com >
2017-04-10 14:35:07 +01:00
Justin Cormack
9ee52aa966
Rework how /var is mounted
...
Instead of mounting a new filesystem, revert to doing a `rw` bind.
However do not make `/` `rshared`, just `/var` as that is where we expect
filesystems to be mounted for persistence. Also only make the actual
container rootfs writeable, not the whole directory.
Signed-off-by: Justin Cormack <justin.cormack@docker.com >
2017-04-10 11:28:00 +01:00
Justin Cormack
bfa76205d5
Change propagation for root
...
- make / rshared
- make /containers private
- make /var its own tmpfs mountpoint, shared
Signed-off-by: Justin Cormack <justin.cormack@docker.com >
2017-04-09 13:50:04 +01:00
Riyaz Faizullabhoy
8ba64546eb
Remount rootfs as read-only after init, /var and /containers mounted as
...
read-write
Signed-off-by: Riyaz Faizullabhoy <riyaz.faizullabhoy@docker.com >
2017-04-06 09:30:46 -07:00
Riyaz Faizullabhoy
a33b9ff4b1
dhcpcd system container
...
Signed-off-by: Riyaz Faizullabhoy <riyaz.faizullabhoy@docker.com >
2017-04-04 08:23:47 -07:00
Justin Cormack
905636d642
Move installable packages to pkg
...
Still leaves some intermediate repos in `base/`
See #1266
Signed-off-by: Justin Cormack <justin.cormack@docker.com >
2017-03-22 12:33:11 +00:00