[tor-bugs] #18127 [Tor Browser]: Add LXC support for building with Debian guest VMs

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Mar 22 20:07:02 UTC 2016


#18127: Add LXC support for building with Debian guest VMs
----------------------------------------------+----------------------------
 Reporter:  gk                                |          Owner:  boklm
     Type:  enhancement                       |         Status:
 Priority:  High                              |  needs_information
Component:  Tor Browser                       |      Milestone:
 Severity:  Normal                            |        Version:
 Keywords:  tbb-gitian, TorBrowserTeam201603  |     Resolution:
Parent ID:                                    |  Actual Points:
 Reviewer:                                    |         Points:
                                              |        Sponsor:
----------------------------------------------+----------------------------

Comment (by gk):

 Replying to [comment:22 boklm]:
 > Regarding our LXC machine, we currently have the following sudo access:
 > {{{
 >     (root) NOPASSWD: /usr/bin/lxc-execute
 >     (root) NOPASSWD: /usr/bin/lxc-start
 >     (root) NOPASSWD: /usr/bin/vmbuilder
 >     (root) NOPASSWD: /sbin/kpartx
 >     (root) NOPASSWD: /bin/cp
 >     (root) NOPASSWD: /bin/chown
 > }}}
 >
 > So what we would need to add is debootstrap, mount, umount, rm.

 I wonder if we would need `lxc-start` on the LXC machine anymore. That
 said do we only need them for VM creation like if we are in KVM mode? I am
 inclined to merge the patches and find a good way of dealing with sudo
 problems later when needed.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/18127#comment:23>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list