Closed vdemeester closed 1 year ago
apko issue : https://github.com/chainguard-dev/apko/issues/344
Hi @vdemeester ,
Strange it works for me,
Could you try adding --isolation chroot
and after this --cap-add=SYS_ADMIN --security-opt seccomp=unconfined --isolation chroot
?
@flouthoc didn't work either. I wonder if it's related to https://github.com/tektoncd/pipeline/issues/5188 (and https://github.com/google/ko/pull/776/files or something in apko or github.com/google/go-containerregistry)
A friendly reminder that this issue had no activity for 30 days.
@flouthoc @vdemeester Still an issue?
I am assuming that the issue is resolved and refereed PR/Issues have more context so closing this issue.
Description
buildah
doesn't seem to be able to build an image using the ghcr.io/distroless/alpine-base:latest image. I am not entirely sure what is the specificity of this particular image except it's build withapko
.Steps to reproduce the issue:
oc run -i --tty meh --image=registry.redhat.io/rhel8/buildah@sha256:0a86ecbdfbe86e9d225b7fe4b090a0dd6d323f8afdfdf2bd933ff223ddb53320 --restart=Never -- sh
Dockerfile
with the following contentDescribe the results you received:
Build fail with "operator not permitted". This runs as root in a container, in OpenShift.
Describe the results you expected:
Build succeeds. Note: using the standard alpine image works seamlessly, and
docker build
on this image works seamlessly as well.Output of
rpm -q buildah
orapt list buildah
:Output of
buildah version
:Output of
uname -a
:Output of
cat /etc/containers/storage.conf
: