-
Notifications
You must be signed in to change notification settings - Fork 5.2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
/tmp directory requires "exec" mode for docker-compose execution #8041
Comments
Note - one can circumvent the /tmp directory using:
but that is not how it is supposed to run IMHO. |
Hello @HaleyACS ! Thanks for the report.
If it cannot be found that's another problem... But a system problem and not a |
That's the point. If I tell docker-compose to use a different TMPDIR=/var/tmp, it works. |
This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions. |
Aliasing if fine, however, I would like a solution that support multiple users on a shared host. Our environment enforces noexec on /tmp per CIS benchmark and I assume DOD STIGs. |
This issue has been automatically marked as not stale anymore due to the recent activity. |
Hi,
Here is a |
This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions. |
This issue has been automatically closed because it had not recent activity during the stale period. |
Description of the issue
recent docker-compose version (tested with 1.27.4) requires /tmp to have exec flag set.
Most secured systems have nodev, nosuid, noexec applied to the /tmp directory by default.
It is possible to relocated the tmp directory, but IMHO this is not how it should work.
Context information (for bug reports)
Output of
docker-compose version
Output of
docker version
Output of
docker-compose config
(Make sure to add the relevant
-f
and other flags)Steps to reproduce the issue
Observed result
Will always return a:
Expected result
Working docker-compose
Stacktrace / full error message
Additional information
OS version / distribution,
docker-compose
install method, etc.Wget installation from git repo.
Ubuntu server 18.04.5 LTS
The text was updated successfully, but these errors were encountered: