runc/patch/0014-runc-add-sysctl-kernel.pid_max-to-whitelist.patch
2023-09-06 16:18:19 +08:00

28 lines
879 B
Diff

From 318779ab775bfe878cac0636c9e610b9951e1335 Mon Sep 17 00:00:00 2001
From: zhangsong34 <zhangsong34@huawei.com>
Date: Mon, 6 May 2019 19:29:40 +0800
Subject: [PATCH] runc:add sysctl kernel.pid_max to whitelist
reason:add sysctl kernel.pid_max to whitelist
Signed-off-by: zhangsong34 <zhangsong34@huawei.com>
---
libcontainer/configs/validate/validator.go | 1 +
1 file changed, 1 insertion(+)
diff --git a/libcontainer/configs/validate/validator.go b/libcontainer/configs/validate/validator.go
index 4fbd308..5ef0e8d 100644
--- a/libcontainer/configs/validate/validator.go
+++ b/libcontainer/configs/validate/validator.go
@@ -170,6 +170,7 @@ func (v *ConfigValidator) sysctl(config *configs.Config) error {
"kernel.shmmax": true,
"kernel.shmmni": true,
"kernel.shm_rmid_forced": true,
+ "kernel.pid_max": true,
}
var (
--
2.33.0