podman: Can't enter containers permission denied: OCI permission denied
Fedora 35
I tried first with the fedora 35 repos version podman 3.4.4-1 and then with podman 4.0.0-10.fc35.x86_64
Error: unable to start container "d03e19bcfad2991a9bd4fd5069d8c2148e964f547a1f6c87e01f1c29832448f3": runc: runc create failed: unable to start container process: error during container init: error preparing rootfs: mount /home/user/.local/share/containers/storage/overlay/f28d4e438e68177945fc2750a8ec7dfb2527ee7b68d9aed866ac476b7df5b5f1/merged:/home/user/.local/share/containers/storage/overlay/f28d4e438e68177945fc2750a8ec7dfb2527ee7b68d9aed866ac476b7df5b5f1/merged, flags: 0x5000: permission denied: OCI permission denied
I also tried this as user
~ podman run --rm -ti --ipc host --network host --privileged --security-opt label=disable --user root:root --pid host --userns keep-id --ulimit host --annotation run.oci.keep_original_groups=1 --mount type=devpts,destination=/dev/pts docker.io/archlinux:latest bash
Trying to pull docker.io/library/archlinux:latest...
Getting image source signatures
Copying blob 9ae2c166397c done
Copying blob baca2b2a1f03 done
Copying config 80d141e567 done
Writing manifest to image destination
Storing signatures
Error: runc: runc create failed: unable to start container process: error during container init: error preparing rootfs: mount /home/user/.local/share/containers/storage/overlay/f4aaf8174628f76592d7574d496594a9406b86dd7f98e6f5ee1aec5252442d12/merged:/home/user/.local/share/containers/storage/overlay/f4aaf8174628f76592d7574d496594a9406b86dd7f98e6f5ee1aec5252442d12/merged, flags: 0x5000: permission denied: OCI permission denied
About this issue
- Original URL
- State: closed
- Created 2 years ago
- Reactions: 2
- Comments: 29 (12 by maintainers)
Make it fail again then
sudo ausearch -m avc -ts recent