-
Notifications
You must be signed in to change notification settings - Fork 91
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Rootless support #245
Comments
This is great! Thanks for bringing this up. We still have a lot of work to do with rootless mode. Currently allocating cells require privileged mode with Aurae however we are working towards Aurae being the daemon and the clients being able to schedule network devices without privilege. For example if you run
you will be able to execute AuraeScript against the daemon and it should work. In the future we will allow that same AuraeScript (or any client) to be able to schedule networks and interfaces without root privileges. Hope this helps. |
I'll be happy to work on this, thanks for explaining |
Now it says |
i believe the end state we want to get to is:
i don't think we're very far from this today, though we don't have systemd configs set up. |
That would not be rootless, but potentially that is not a critical feature for now? worth closing imo |
at the moment there's no support for running auraed without root, or at least without a user with permission to create cgroups and maybe more. so I think this issue is not an unknown issue, so I will close it. |
I see #52 is open for networking in rootless mode. However, it's not yet clear in docs how to run anything at all in rootless mode. I believe the bare minimum would be
systemd-run --user --property=Delegate=true ./target/debug/auraed ...
, but that doesn't really help (cell 'my-cell' could not be allocated: Operation not permitted (os error 1)
). The origin of error is unclear, but likely to be in cgroup creation.OS: Fedora 37, SELinux: enforcing, running systemd with cgroupv2.
AuraeScript code ran:
Sorry if something is very wrong on my side: I've only started working with Aurae, but very excited to start working with it, maybe contributing some code.
The text was updated successfully, but these errors were encountered: