feat(profile): add buildx support in dockerd.

This commit is contained in:
Alexandre Pujol 2024-09-18 21:10:04 +01:00
parent bdac1adf8f
commit 305fceb413
Failed to generate hash of commit

View file

@ -32,15 +32,24 @@ profile dockerd @{exec_path} flags=(attach_disconnected) {
network inet6 stream, network inet6 stream,
network netlink raw, network netlink raw,
mount /tmp/containerd-mount@{int}/,
mount /var/lib/docker/buildkit/**/,
mount /var/lib/docker/overlay2/**/, mount /var/lib/docker/overlay2/**/,
mount /var/lib/docker/tmp/buildkit-mount@{int}/,
mount options=(rw, bind) -> /run/docker/netns/*, mount options=(rw, bind) -> /run/docker/netns/*,
mount options=(rw, rbind) -> /var/lib/docker/tmp/docker-builder@{int}/, mount options=(rw, rbind) -> /var/lib/docker/tmp/docker-builder@{int}/,
mount options=(rw, rprivate) -> /.pivot_root@{int}/, mount options=(rw, rprivate) -> /.pivot_root@{int}/,
mount options=(rw, rslave) -> /, mount options=(rw, rslave) -> /,
remount /tmp/containerd-mount@{int10}/,
remount /var/lib/docker/tmp/buildkit-mount@{int10}/,
umount /.pivot_root@{int}/, umount /.pivot_root@{int}/,
umount /run/docker/netns/*, umount /run/docker/netns/*,
umount /tmp/containerd-mount@{int}/,
umount /var/lib/docker/buildkit/**/,
umount /var/lib/docker/overlay*/**/, umount /var/lib/docker/overlay*/**/,
umount /var/lib/docker/tmp/buildkit-mount@{int}/,
pivot_root oldroot=/var/lib/docker/overlay*/**/.pivot_root@{int}/ /var/lib/docker/overlay2/**/, pivot_root oldroot=/var/lib/docker/overlay*/**/.pivot_root@{int}/ /var/lib/docker/overlay2/**/,
pivot_root oldroot=/var/lib/docker/tmp/**/.pivot_root@{int}/ /var/lib/docker/tmp/**/, pivot_root oldroot=/var/lib/docker/tmp/**/.pivot_root@{int}/ /var/lib/docker/tmp/**/,