|
@@ -1,107 +1,213 @@
|
|
|
{
|
|
|
- "namespaces": {
|
|
|
- "NEWNET": true,
|
|
|
- "NEWPID": true,
|
|
|
- "NEWIPC": true,
|
|
|
- "NEWUTS": true,
|
|
|
- "NEWNS": true
|
|
|
- },
|
|
|
- "networks": [
|
|
|
- {
|
|
|
- "gateway": "localhost",
|
|
|
- "type": "loopback",
|
|
|
- "address": "127.0.0.1/0",
|
|
|
- "mtu": 1500
|
|
|
+ "capabilities": [
|
|
|
+ "CHOWN",
|
|
|
+ "DAC_OVERRIDE",
|
|
|
+ "FOWNER",
|
|
|
+ "MKNOD",
|
|
|
+ "NET_RAW",
|
|
|
+ "SETGID",
|
|
|
+ "SETUID",
|
|
|
+ "SETFCAP",
|
|
|
+ "SETPCAP",
|
|
|
+ "NET_BIND_SERVICE",
|
|
|
+ "SYS_CHROOT",
|
|
|
+ "KILL"
|
|
|
+ ],
|
|
|
+ "cgroups": {
|
|
|
+ "allowed_devices": [
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "m",
|
|
|
+ "major_number": -1,
|
|
|
+ "minor_number": -1,
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "m",
|
|
|
+ "major_number": -1,
|
|
|
+ "minor_number": -1,
|
|
|
+ "type": 98
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "major_number": 5,
|
|
|
+ "minor_number": 1,
|
|
|
+ "path": "/dev/console",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "major_number": 4,
|
|
|
+ "path": "/dev/tty0",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "major_number": 4,
|
|
|
+ "minor_number": 1,
|
|
|
+ "path": "/dev/tty1",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "major_number": 136,
|
|
|
+ "minor_number": -1,
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "major_number": 5,
|
|
|
+ "minor_number": 2,
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "major_number": 10,
|
|
|
+ "minor_number": 200,
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 3,
|
|
|
+ "path": "/dev/null",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 5,
|
|
|
+ "path": "/dev/zero",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 7,
|
|
|
+ "path": "/dev/full",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 5,
|
|
|
+ "path": "/dev/tty",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 9,
|
|
|
+ "path": "/dev/urandom",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 8,
|
|
|
+ "path": "/dev/random",
|
|
|
+ "type": 99
|
|
|
+ }
|
|
|
+ ],
|
|
|
+ "name": "docker-koye",
|
|
|
+ "parent": "docker"
|
|
|
},
|
|
|
- {
|
|
|
- "gateway": "172.17.42.1",
|
|
|
- "context": {
|
|
|
- "prefix": "veth",
|
|
|
- "bridge": "docker0"
|
|
|
- },
|
|
|
- "type": "veth",
|
|
|
- "address": "172.17.42.2/16",
|
|
|
- "mtu": 1500
|
|
|
- }
|
|
|
- ],
|
|
|
- "routes": [
|
|
|
- {
|
|
|
- "gateway": "172.17.42.1",
|
|
|
- "interface_name": "eth0"
|
|
|
+ "context": {
|
|
|
+ "mount_label": "",
|
|
|
+ "process_label": "",
|
|
|
+ "restrictions": "true"
|
|
|
},
|
|
|
- {
|
|
|
- "destination": "192.168.0.0/24",
|
|
|
- "interface_name": "eth0"
|
|
|
- }
|
|
|
- ],
|
|
|
- "capabilities": [
|
|
|
- "MKNOD"
|
|
|
- ],
|
|
|
- "cgroups": {
|
|
|
- "name": "docker-koye",
|
|
|
- "parent": "docker"
|
|
|
- },
|
|
|
- "hostname": "koye",
|
|
|
- "environment": [
|
|
|
- "HOME=/",
|
|
|
- "PATH=PATH=$PATH:/bin:/usr/bin:/sbin:/usr/sbin",
|
|
|
- "container=docker",
|
|
|
- "TERM=xterm-256color"
|
|
|
- ],
|
|
|
- "tty": true,
|
|
|
- "mounts": [
|
|
|
- {
|
|
|
- "type": "devtmpfs"
|
|
|
- }
|
|
|
- ],
|
|
|
- "device_nodes": [
|
|
|
- {
|
|
|
- "path": "/dev/null",
|
|
|
- "type": 99,
|
|
|
- "major_number": 1,
|
|
|
- "minor_number": 3,
|
|
|
- "cgroup_permissions": "rwm",
|
|
|
- "file_mode": 438
|
|
|
- },
|
|
|
- {
|
|
|
- "path": "/dev/zero",
|
|
|
- "type": 99,
|
|
|
- "major_number": 1,
|
|
|
- "minor_number": 5,
|
|
|
- "cgroup_permissions": "rwm",
|
|
|
- "file_mode": 438
|
|
|
- },
|
|
|
- {
|
|
|
- "path": "/dev/full",
|
|
|
- "type": 99,
|
|
|
- "major_number": 1,
|
|
|
- "minor_number": 7,
|
|
|
- "cgroup_permissions": "rwm",
|
|
|
- "file_mode": 438
|
|
|
- },
|
|
|
- {
|
|
|
- "path": "/dev/tty",
|
|
|
- "type": 99,
|
|
|
- "major_number": 5,
|
|
|
- "minor_number": 0,
|
|
|
- "cgroup_permissions": "rwm",
|
|
|
- "file_mode": 438
|
|
|
- },
|
|
|
- {
|
|
|
- "path": "/dev/urandom",
|
|
|
- "type": 99,
|
|
|
- "major_number": 1,
|
|
|
- "minor_number": 9,
|
|
|
- "cgroup_permissions": "rwm",
|
|
|
- "file_mode": 438
|
|
|
- },
|
|
|
- {
|
|
|
- "path": "/dev/random",
|
|
|
- "type": 99,
|
|
|
- "major_number": 1,
|
|
|
- "minor_number": 8,
|
|
|
- "cgroup_permissions": "rwm",
|
|
|
- "file_mode": 438
|
|
|
- }
|
|
|
- ]
|
|
|
+ "device_nodes": [
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "major_number": 10,
|
|
|
+ "minor_number": 229,
|
|
|
+ "path": "/dev/fuse",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 3,
|
|
|
+ "path": "/dev/null",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 5,
|
|
|
+ "path": "/dev/zero",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 7,
|
|
|
+ "path": "/dev/full",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 5,
|
|
|
+ "path": "/dev/tty",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 9,
|
|
|
+ "path": "/dev/urandom",
|
|
|
+ "type": 99
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "cgroup_permissions": "rwm",
|
|
|
+ "file_mode": 438,
|
|
|
+ "major_number": 1,
|
|
|
+ "minor_number": 8,
|
|
|
+ "path": "/dev/random",
|
|
|
+ "type": 99
|
|
|
+ }
|
|
|
+ ],
|
|
|
+ "environment": [
|
|
|
+ "HOME=/",
|
|
|
+ "PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin",
|
|
|
+ "HOSTNAME=2d388ea3bd92",
|
|
|
+ "TERM=xterm"
|
|
|
+ ],
|
|
|
+ "hostname": "koye",
|
|
|
+ "namespaces": {
|
|
|
+ "NEWIPC": true,
|
|
|
+ "NEWNET": true,
|
|
|
+ "NEWNS": true,
|
|
|
+ "NEWPID": true,
|
|
|
+ "NEWUTS": true
|
|
|
+ },
|
|
|
+ "networks": [
|
|
|
+ {
|
|
|
+ "address": "127.0.0.1/0",
|
|
|
+ "gateway": "localhost",
|
|
|
+ "mtu": 1500,
|
|
|
+ "type": "loopback"
|
|
|
+ },
|
|
|
+ {
|
|
|
+ "address": "172.17.0.101/16",
|
|
|
+ "context": {
|
|
|
+ "bridge": "docker0",
|
|
|
+ "prefix": "veth"
|
|
|
+ },
|
|
|
+ "gateway": "172.17.42.1",
|
|
|
+ "mtu": 1500,
|
|
|
+ "type": "veth"
|
|
|
+ }
|
|
|
+ ],
|
|
|
+ "tty": true
|
|
|
}
|