-
Notifications
You must be signed in to change notification settings - Fork 4.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update runsc version used by gVisor addon #4482
Comments
Currently blocked by #3512 since runsc uses pivot_root. |
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass
Thanks for creating this issue, if you don't mind could you provide more context on the reason for this request? I would be happy to review any PR that would improve the gvsior addon |
There isn't a specific reason besides that the version currently used is 6mo+ old and containerd isn't set up to use RuntimeClass and shim v2. It's been on my back burner for a while, just haven't gotten around to it. Added an issue to track. You can assign to me if inclined. |
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass
Theoretically one could make that other program respect the legacy/vulnerable setting of |
@afbjorklund Yeah, Though since gVisor is a sandbox runtime I'd like to avoid adding adding less secure options if possible. |
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass Issue kubernetes#4482
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass Issue kubernetes#4482
- Updates the gvisor addon to use containerd shim v2 - Updates the version of runsc - Auto-installs a gvisor RuntimeClass Issue kubernetes#4482
Merged in by #4494. |
Now that minikube can use containerd 1.2+ we should update containerd to use shimv2 and update the runsc version used.
The text was updated successfully, but these errors were encountered: