Closed dherrendoerfer closed 6 years ago
It's not clear what the issue is.
--tmpfs
parameter then there is no mount and the directory permissions are unchanged$ docker run --rm --runtime runq --tmpfs /tmp alpine stat -c'%n %A' /tmp
/tmp drwxrwxrwt
$ docker run --rm --runtime runq --tmpfs /tmp:mode=0700 alpine stat -c'%n %A' /tmp
/tmp drwx------
Tmpfs in runc and runq should not behave differently.
Can you please provide at least a simple example to reproduce the issue with the current release of runq? Thanks.
I verified it with the latest release, and it does indeed work correctly. I'll be closing the issue.
Thanks for the help!
Using
--tmpfs /tmp
seems to overwrite the permissions of an existing mount directory.We're getting this permission set on a container when running:
drwxr-xr-x 2 root root 60 Jun 27 19:17 tmp
The container template has:
drwxrwxrwt 2 root root 60 Jun 27 18:41 tmp