linux-integrity.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
From: Petr Vorel <pvorel@suse.cz>
To: Mimi Zohar <zohar@linux.ibm.com>
Cc: linux-integrity@vger.kernel.org, Mimi Zohar <zohar@linux.vnet.ibm.com>
Subject: Re: [PATCH ima-evm-utils] travis: Fix openSUSE Tumbleweed
Date: Tue, 13 Apr 2021 14:49:56 +0200	[thread overview]
Message-ID: <YHWTdNEmLpYKxu9g@pevik> (raw)
In-Reply-To: <b65400f3c4c54f74724247d111c46fbfea3183d4.camel@linux.ibm.com>

Hi Mimi,

> Hi Petr,

> On Fri, 2021-03-12 at 12:41 +0100, Petr Vorel wrote:
> > openSUSE Tumbleweed build fails due broken permission detection due
> > faccessat2() incompatibility in libseccomp/runc used in old docker with
> > old kernel on Ubuntu Focal on hosts in Travis CI together with guests
> > with the newest glibc 2.33.

> > Fixing Tumbleweed required switch to podman and downloading newest runc
> > release (v1.0.0-rc93) which contains the fix [1], because proposed glibc
> > fix [2] aren't going to merged to upstream [3] nor to Tumbleweed
> > downstream glibc [4].

> > Using podman requires --no-same-owner tar option to workaround
> > running out of subuids/subgids:
> > tar: ./LICENSE: Cannot change ownership to uid 339315, gid 578953: Invalid argument
> > (sudo would also work)

> > Sooner or later it will be required for more distros (Fedora, Debian
> > Ubuntu), but don't waste build time until required.

> > [1] https://github.com/opencontainers/runc/pull/2750
> > [2] https://sourceware.org/pipermail/libc-alpha/2020-November/119955.html
> > [3] https://sourceware.org/pipermail/libc-alpha/2020-November/119978.html
> > [4] https://bugzilla.opensuse.org/1182451

> > Signed-off-by: Petr Vorel <pvorel@suse.cz>

> The mismatch seems to be when compiling with clang, at least on our
> internal travis.  Compiling opensuse/tumbleweed with gcc works
> fine.  Compiling opensuse/leap with clang is fine too.  Does that make
> sense?
Thanks for info. I have no idea now, I'll have a look.

Kind regards,
Petr

> Mimi




      reply	other threads:[~2021-04-13 12:50 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2021-03-12 11:41 [PATCH ima-evm-utils] travis: Fix openSUSE Tumbleweed Petr Vorel
2021-03-12 11:42 ` Petr Vorel
2021-04-13 12:02 ` Mimi Zohar
2021-04-13 12:49   ` Petr Vorel [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=YHWTdNEmLpYKxu9g@pevik \
    --to=pvorel@suse.cz \
    --cc=linux-integrity@vger.kernel.org \
    --cc=zohar@linux.ibm.com \
    --cc=zohar@linux.vnet.ibm.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).