| 15 Jun 2021 |
colemickens | I want to at least spend a bit more time trying to build the images, not sure I can commit to upstreaming unless I find myself using it beyond tinkering. | 07:19:38 |
Mic92 (Old) | How much does this agent depends on is userspace? | 07:20:24 |
Mic92 (Old) | Is is more or less self-sufficient? | 07:20:36 |
colemickens | It's meant to be able to run as pid 1 itself, so I think very little. | 07:20:53 |
Mic92 (Old) | Because right now I would just stick to the pre-build images until I got a better understanding. | 07:20:56 |
colemickens | well, I should be more clear, it can be run as pid 1, and will behave accordingly. | 07:21:26 |
colemickens | IIRC I even got the agent starting up, it was just failing to do some cgroups setup at pod-start-time | 07:21:49 |
colemickens | someone in the Kata Slack gave a suggestion and wants to help me, I just need to take a day | 07:22:04 |
Mic92 (Old) | colemickens: do you do cgroupv2 or v1? | 07:22:13 |
Mic92 (Old) | kata has problems with cgroupv2 on the host | 07:22:24 |
Mic92 (Old) | I had to disable it | 07:22:28 |
colemickens | on the host? | 07:22:35 |
colemickens | hm | 07:22:38 |
Mic92 (Old) | The host running the vm | 07:22:46 |
colemickens | I am pretty sure I'm on cgroupsv2 yes, I hadn't quite noticed that | 07:22:57 |
colemickens | its been a couple weeks though... | 07:23:18 |
Mic92 (Old) | You will see it breaks container that run for longer. | 07:23:20 |
Mic92 (Old) | The hello-world container works | 07:23:33 |
Mic92 (Old) | but not a busybox one that is interactive | 07:23:40 |
Mic92 (Old) | At least in the released version of kata-containers | 07:23:52 |
Mic92 (Old) | Not sure about master | 07:23:56 |
Mic92 (Old) | If you enable k3s or kubernetes service you might also get cgroupv1 | 07:24:15 |
colemickens | ok, thanks for the heads up, I'll keep an eye out, I hadn't really considered that the host config would matter too much. | 07:24:23 |
colemickens | I'm sorta hoping to try Nomad, but we'll see... | 07:24:48 |
Mic92 (Old) | That took me way to long to figure out. | 07:24:51 |
Mic92 (Old) | Nomad will have the same issue if it uses containerd I think | 07:25:05 |
| * colemickens nods | 07:25:25 |
Mic92 (Old) | I am sure they will sort this out this year, but right now it is a known issue. | 07:25:39 |
Mic92 (Old) | colemickens: a different issue is that qemu does not like read-only mounts. It is ok with not beeing able to right the image so. | 07:27:28 |
Mic92 (Old) | That's why I copy initrds + rootfs to a location outside the nix store. | 07:27:46 |