Skip to content

How to use the systemd directive "RestrictAddressFamilies" with "podman run"? #14311

Answered by mheon
eriksjolund asked this question in Q&A
Discussion options

You must be logged in to vote

I can definitely say that RestrictAddressFamilies=none will not work - we use Unix sockets internally to handle container attach.

I am somewhat surprised that restricting to AF_UNIX only does not work - @giuseppe The error seems to be coming out of crun - thoughts?

@eriksjolund Does it work if you use runc instead?

Replies: 2 comments 9 replies

Comment options

You must be logged in to vote
9 replies
@giuseppe
Comment options

@eriksjolund
Comment options

@eriksjolund
Comment options

@eriksjolund
Comment options

@eriksjolund
Comment options

Answer selected by eriksjolund
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
6 participants