Skip to content

CentOS 7 - Extras Testing for x86_64: unspecified: docker-novolume-plugin

docker-novolume-plugin - Block container starts with local volumes defined

Website: https://github.com/projectatomic/docker-novolume-plugin
License: MIT
Vendor: CentOS
Description:
When a volume in provisioned via the `VOLUME` instruction in a Dockerfile or
via `docker run -v volumename`, host's storage space is used. This could lead to
an unexpected out of space issue which could bring down everything.
There are situations where this is not an accepted behavior. PAAS, for
instance, can't allow their users to run their own images without the risk of
filling the entire storage space on a server. One solution to this is to deny users
from running images with volumes. This way the only storage a user gets can be limited
and PAAS can assign quota to it.

This plugin solves this issue by disallowing starting a container with
local volumes defined. In particular, the plugin will block `docker run` with:

- `--volumes-from`
- images that have `VOLUME`(s) defined
- volumes early provisioned with `docker volume` command

The only thing allowed will be just bind mounts.

Packages

docker-novolume-plugin-1.13.1-162.git64e9980.el7.centos.x86_64 [1.9 MiB] Changelog by Jindrich Novy (2020-06-22):
- rebuilt
docker-novolume-plugin-1.13.1-161.git64e9980.el7_8.x86_64 [1.9 MiB] Changelog by Jindrich Novy (2020-03-03):
- make failure message for CVE-2020-1702 more obvious (#1804024)
- drop patch for #1734482 as it breaks compilation
docker-novolume-plugin-1.13.1-109.gitcccb291.el7.centos.x86_64 [1.9 MiB] Changelog by Jindrich Novy (2020-01-30):
- use runc sources off 66aedde7 commit in docker-1.13.1-rhel branch (#1793486)
- use docker sources off cccb291 commit in docker-1.13.1-rhel branch
- do not use CollectMode systemd property in RHEL7
- whitelist statx(2) syscall in docker (#1784228)
- assure thread safety for gpgme library (#1792243)
docker-novolume-plugin-1.13.1-108.git4ef4b30.el7.centos.x86_64 [1.9 MiB] Changelog by Jindrich Novy (2019-12-13):
- bump release to not to clash with RHEL7.8
docker-novolume-plugin-1.13.1-103.git7f2769b.el7.centos.x86_64 [1.9 MiB] Changelog by Johnny Hughes (2019-09-15):
- Manual CentOS Debrnading

Listing created by repoview