[feature]
isolate /proc/sys/kernel/core_pattern
[scenarios]
when we use container, if the application has a core dump, we wanna to get its coredump file.
But we don't wanna any core file in the host.So we need an isolation between container and host.
If it works, we won't have any core file in host but we can get our application core file in the container.
Glad to hear your suggestion~
Hey @haomintsai, Welcome to openEuler Community.
All of the projects in openEuler Community are maintained by @openeuler-ci-bot.
That means the developpers can comment below every pull request or issue to trigger Bot Commands.
Please follow instructions at https://gitee.com/openeuler/community/blob/master/en/sig-infrastructure/command.md to find the details.
此处可能存在不合适展示的内容,页面不予展示。您可通过相关编辑功能自查并修改。
如您确认内容无涉及 不当用语 / 纯广告导流 / 暴力 / 低俗色情 / 侵权 / 盗版 / 虚假 / 无价值内容或违法国家有关法律法规的内容,可点击提交进行申诉,我们将尽快为您处理。
good idea
@Xie XiuQi Plz take a look
@haomintsai
I'll discuss with kernel team.
Thanks~~~
@Xie XiuQi
Is there any discussion conclusion?
This feature is very needed in the container.
@Xie XiuQi
The discussion in kernel mailing list in 2016, but it has not been applied yet.
@Xie XiuQi
Glad to hear from you~
The discussion in kernel mailing list in 2016, but it has not been applied yet.
https://lore.kernel.org/patchwork/patch/643798/
I had a deep looking into that patch, the problem lies in the pipe use in core_pattern
like | /usr/bin/gdb xxxx
Although the author argued about the limit usage in container, there still some gap before get merged.
So what's your thought for a further step? Should we follow above PR or have something else?
There is no proper solution until now, just close this issue. If anyone has any good idea, please open a new issue.
登录 后才可以发表评论