Skip to content

Instantly share code, notes, and snippets.

@johnarok
Last active December 18, 2018 02:35
Show Gist options
  • Save johnarok/087dfec78cacf22d2ca36da914b4faf8 to your computer and use it in GitHub Desktop.
Save johnarok/087dfec78cacf22d2ca36da914b4faf8 to your computer and use it in GitHub Desktop.
Container Image Building

https://docs.google.com/spreadsheets/d/19qit3B2kIjcQrf0w7H5yqeg-so1-pleA9Fs1EBQNvKc/edit?usp=sharing

URL Component Status Notes/Description

https://bugzilla.redhat.com/show_bug.cgi?id=1498628

Centos Open "rhel77-crypto-shadow-utils) shadow-utils: Update to get newuidmap and newgidmap binaries We are seeing a lot of interest in using buildah and podman as non root, withougt the newgimap and newuidmap on RHEL, those users will not be able use this feature. I think we should reconsider not at least adding these two executables "" shadow-utils-4.1.5.1-24.el7.x86_64"""

https://bugzilla.redhat.com/show_bug.cgi?id=1546870 Centos Closed dockerd man page: --userns-remap=default does NOT create user namespace map

containers/buildah#158 Buildah Closed can buildah run in a docker container? #158 (BUT userns and unprivlieged ones cannot)

docker/cli#1347 Docker/img Open add cli integration for masked and readonly paths #1347

GoogleContainerTools/kaniko#105 Kaniko Open Running as NonRoot

kata-containers/runtime#892 Kata Containers Open kata-runtime 1.3.1 does not work with calico #892

kubernetes/community#1934 Kuberentes/img Merged add ProcMount option #1934, TBD 1.13

kubernetes/enhancements#127 Kuberentes Open Support node-level user namespace remapping #127

kubernetes/kubernetes#64005 Kuberentes Open Node-Level UserNamespace implementation #64005

moby/moby#36644 Docker/img Merged api: add MaskedPaths and ReadonlyPaths options #36644

openshift/release#1178 bazel builds Merged add openshift/installer 'bazel build tarball' test to prow #1178

projectatomic/docker#301 docker Closed Add better error for subuid/subgid with usernamespace #301

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment