[rh7,3/8] ve/procfs: make /proc/config.gz visible inside Containers

Submitted by Konstantin Khorenko on Feb. 21, 2020, 4:07 p.m.

Details

Message ID 20200221160731.16888-4-khorenko@virtuozzo.com
State New
Series "enable running Kubernetes inside a Container"
Headers show

Commit Message

Konstantin Khorenko Feb. 21, 2020, 4:07 p.m.
Kubernetes reads this file to check kernel version at the moment and
potentially to check other options in the future.

https://jira.sw.ru/browse/PSBM-92107

Signed-off-by: Konstantin Khorenko <khorenko@virtuozzo.com>
---
 kernel/configs.c | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

Patch hide | download patch | download mbox

diff --git a/kernel/configs.c b/kernel/configs.c
index c18b1f1ae515a..8d22d653aaaee 100644
--- a/kernel/configs.c
+++ b/kernel/configs.c
@@ -74,7 +74,7 @@  static int __init ikconfig_init(void)
 	struct proc_dir_entry *entry;
 
 	/* create the current config file */
-	entry = proc_create("config.gz", S_IFREG | S_IRUGO, NULL,
+	entry = proc_create("config.gz", S_IFREG | S_IRUGO | S_ISVTX, NULL,
 			    &ikconfig_file_ops);
 	if (!entry)
 		return -ENOMEM;