zhaixiaojuan
885509afdf
Add loong64 support in seccomp and PIE
...
Signed-off-by: zhaixiaojuan <zhaixiaojuan@loongson.cn >
2025-10-21 09:41:49 +08:00
lifubang
79e9cf53e0
doc: update spec-conformance.md
...
Signed-off-by: lifubang <lifubang@acmcoder.com >
2025-03-05 19:26:06 -08:00
utam0k
bfbd0305ba
Add I/O priority
...
Signed-off-by: utam0k <k0ma@utam0k.jp >
2024-03-30 22:31:54 +09:00
Akihiro Suda
eefc6ae254
features: implement returning potentiallyUnsafeConfigAnnotations list
...
See https://github.com/opencontainers/runtime-spec/blob/v1.2.0/features.md#unsafe-annotations-in-configjson
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp >
2024-03-09 21:31:49 +09:00
dependabot[bot]
606251ab33
build(deps): bump github.com/opencontainers/runtime-spec
...
Bumps [github.com/opencontainers/runtime-spec](https://github.com/opencontainers/runtime-spec ) from 1.1.1-0.20230823135140-4fec88fd00a4 to 1.2.0.
- [Release notes](https://github.com/opencontainers/runtime-spec/releases )
- [Changelog](https://github.com/opencontainers/runtime-spec/blob/main/ChangeLog )
- [Commits](https://github.com/opencontainers/runtime-spec/commits/v1.2.0 )
---
updated-dependencies:
- dependency-name: github.com/opencontainers/runtime-spec
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp >
2024-03-07 14:43:33 +09:00
lfbzhm
55c9d6bf01
we have implemented idmapped-mounts with no limitations
...
Signed-off-by: lfbzhm <lifubang@acmcoder.com >
2024-01-04 19:24:21 +08:00
lfbzhm
e90d8cb8fe
we have supported rsvd hugetlb cgroup
...
Signed-off-by: lfbzhm <lifubang@acmcoder.com >
2024-01-04 19:24:21 +08:00
Zheao.Li
98511bb40e
linux: Support setting execution domain via linux personality
...
carry #3126
Co-authored-by: Aditya R <arajan@redhat.com >
Signed-off-by: Zheao.Li <me@manjusaka.me >
2023-10-27 19:33:37 +08:00
Akihiro Suda
0274ca2580
Merge pull request #4025 from lifubang/feat-sched-carry-3962
...
[Carry 3962] Support `process.scheduler`
2023-10-12 08:07:50 +09:00
utam0k
770728e16e
Support process.scheduler
...
Spec: https://github.com/opencontainers/runtime-spec/pull/1188
Fix: https://github.com/opencontainers/runc/issues/3895
Co-authored-by: lifubang <lifubang@acmcoder.com >
Signed-off-by: utam0k <k0ma@utam0k.jp >
Signed-off-by: lifubang <lifubang@acmcoder.com >
2023-10-04 15:53:18 +08:00
Aleksa Sarai
d8d576ca4f
merge #4031 into opencontainers/runc:main
...
Akihiro Suda (1):
docs: clarify the supported architectures (No MIPS)
LGTMs: kolyskin cyphar
2023-10-04 16:08:08 +11:00
Zheao Li
4b3b7e9973
docs/spec-conformance: update
...
Since PR 3876 was merged, let's remove time namespace from the list of unimplemented features.
Signed-off-by: Zheao Li <me@manjusaka.me >
2023-09-27 20:24:43 +08:00
Akihiro Suda
9060666531
docs: clarify the supported architectures (No MIPS)
...
In reviewing PR 4024 ("libct/dmz: Reduce the binary size using nolibc"),
we noticed that we do not intend to actively support MIPS.
We do not intend to support i386 either.
This might be a breaking change for Debian, which has been officially
providing runc packages for `i386`, `mips64el` and `mipsel`:
https://packages.debian.org/bookworm/runc
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp >
2023-09-27 05:39:47 +09:00
Kailun Qin
e1584831b6
libct/cg: add CFS bandwidth burst for CPU
...
Burstable CFS controller is introduced in Linux 5.14. This helps with
parallel workloads that might be bursty. They can get throttled even
when their average utilization is under quota. And they may be latency
sensitive at the same time so that throttling them is undesired.
This feature borrows time now against the future underrun, at the cost
of increased interference against the other system users, by introducing
cfs_burst_us into CFS bandwidth control to enact the cap on unused
bandwidth accumulation, which will then used additionally for burst.
The patch adds the support/control for CFS bandwidth burst.
runtime-spec: https://github.com/opencontainers/runtime-spec/pull/1120
Co-authored-by: Akihiro Suda <suda.kyoto@gmail.com >
Co-authored-by: Nadeshiko Manju <me@manjusaka.me >
Signed-off-by: Kailun Qin <kailun.qin@intel.com >
2023-09-06 23:23:30 +08:00
dependabot[bot]
11b6c9b638
build(deps): bump github.com/opencontainers/runtime-spec
...
Bumps [github.com/opencontainers/runtime-spec](https://github.com/opencontainers/runtime-spec ) from 1.1.0-rc.3 to 1.1.0.
- [Release notes](https://github.com/opencontainers/runtime-spec/releases )
- [Changelog](https://github.com/opencontainers/runtime-spec/blob/main/ChangeLog )
- [Commits](https://github.com/opencontainers/runtime-spec/compare/v1.1.0-rc.3...v1.1.0 )
---
updated-dependencies:
- dependency-name: github.com/opencontainers/runtime-spec
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp >
2023-07-22 13:03:35 +09:00
Rodrigo Campos
867ee90534
docs: Update spec conformance for idmap mounts
...
Signed-off-by: Rodrigo Campos <rodrigoca@microsoft.com >
2023-07-17 16:29:07 +02:00
Akihiro Suda
0ac3376c20
go.mod: runtime-spec v1.1.0-rc.3
...
https://github.com/opencontainers/runtime-spec/releases/tag/v1.1.0-rc.3
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp >
2023-06-10 17:19:11 +09:00
Akihiro Suda
6beb3c6a3e
go.mod: runtime-spec v1.1.0-rc.2
...
See https://github.com/opencontainers/runtime-spec/releases/tag/v1.1.0-rc.2
for the spec changes.
The `runc features` json is now defined in
https://github.com/opencontainers/runtime-spec/blob/v1.1.0-rc.2/specs-go/features/features.go
Replaces PR 3829
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp >
2023-05-10 22:23:29 +09:00
Akihiro Suda
e412b4e88c
docs: add docs/spec-conformance.md
...
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp >
2023-02-10 12:10:18 +09:00