Hey RK,
7/15/2024root@kind-control-plane:/proc/12537# cat mountinfo | grep /volumes4039 4031 259:5 /var/lib/docker/volumes/2f84a9abf406eacbf708ff756d0d9049d65f198c995286d1e6a4cbb61fdf73b9/_data/lib/kubelet/pods/bc2bf616-5ab6-4c66-a4e4-f344d59877aa/etc-hosts /etc/hosts rw,relatime - ext4 /dev/nvme0n1p3 rw,errors=remount-ro4040 4034 259:5 /var/lib/docker/volumes/2f84a9abf406eacbf708ff756d0d9049d65f198c995286d1e6a4cbb61fdf73b9/_data/lib/kubelet/pods/bc2bf616-5ab6-4c66-a4e4-f344d59877aa/containers/venafi-kubernetes-agent/8dfcdb56 /dev/termination-log rw,relatime - ext4 /dev/nvme0n1p3 rw,errors=remount-ro4041 4031 259:5 /var/lib/docker/volumes/2f84a9abf406eacbf708ff756d0d9049d65f198c995286d1e6a4cbb61fdf73b9/_data/lib/containerd/io.containerd.grpc.v1.cri/sandboxes/f9140a5c026f42322c207f05f81118225ecf8c5b0012e074085936c6ce7aa4fb/hostname /etc/hostname ro,relatime - ext4 /dev/nvme0n1p3 rw,errors=remount-ro4042 4031 259:5 /var/lib/docker/volumes/2f84a9abf406eacbf708ff756d0d9049d65f198c995286d1e6a4cbb61fdf73b9/_data/lib/containerd/io.containerd.grpc.v1.cri/sandboxes/f9140a5c026f42322c207f05f81118225ecf8c5b0012e074085936c6ce7aa4fb/resolv.conf /etc/resolv.conf ro,relatime - ext4 /dev/nvme0n1p3 rw,errors=remount-ro4044 4031 259:5 /var/lib/docker/volumes/2f84a9abf406eacbf708ff756d0d9049d65f198c995286d1e6a4cbb61fdf73b9/_data/lib/kubelet/pods/bc2bf616-5ab6-4c66-a4e4-f344d59877aa/volumes/kubernetes.io~empty-dir/ca-certs-empty /etc/ssl/certs rw,relatime - ext4 /dev/nvme0n1p3 rw,errors=remount-ro4045 4031 259:5 /var/lib/docker/volumes/2f84a9abf406eacbf708ff756d0d9049d65f198c995286d1e6a4cbb61fdf73b9/_data/lib/kubelet/pods/bc2bf616-5ab6-4c66-a4e4-f344d59877aa/volumes/kubernetes.io~configmap/config /etc/venafi/agent/config ro,relatime - ext4 /dev/nvme0n1p3 rw,errors=remount-ro4047 4044 259:5 /var/lib/docker/volumes/2f84a9abf406eacbf708ff756d0d9049d65f198c995286d1e6a4cbb61fdf73b9/_data/lib/kubelet/pods/bc2bf616-5ab6-4c66-a4e4-f344d59877aa/volumes/kubernetes.io~configmap/cabundle/foo /etc/ssl/certs/ca-cert-tpp-ca.crt ro,relatime - ext4 /dev/nvme0n1p3 rw,errors=remount-ro
7/1/2024Tested on macOS with Docker running on a VM created by limactl. It shouldalso work on macOS with Docker Desktop, but also on Linux. The reason we runVault in a container instead of locally is because it needs to be on the sameVM as the kind cluster so that cert-manager can reach Vault, and Vault canreach kube-apiserver.
6/10/2024package linux_cap
6/4/2024or
By clicking below, you agree to our terms of service.
New to HackMD? Sign up