tiny-container-user-basic automated


Image Types:
tiny-lxc-armhf / tiny-lxc-arm64 / tiny-lxc-amd64
Image Deployment:


Test of Tiny unprivileged container without any networking started as user

Pre Conditions

  1. Clone the tests repository from another computer (Note that the branch being tested may change depending on the release, please make sure to clone the correct branch for the release in question):
  2. $ git clone --branch apertis/v2024dev2 https://gitlab.apertis.org/infrastructure/tiny-image-recipes.git
  3. Copy the test directory tiny-image-recipes to the target device:
  4. $ DUT_IP=<device-ip>
    $ scp -r tiny-image-recipes user@$DUT_IP:
  5. Log into the target device:
  6. $ ssh user@$DUT_IP

Execution Steps

  1. Enter test directory:
  2. $ cd tiny-image-recipes
  3. Ensure we allow user mapping:
  4. $ sysctl -w kernel.unprivileged_userns_clone=1
  5. Setup the AppArmor profile for container:
  6. $ sed s/__NAMESPACE_PLACEHOLDER__/lxc-apertis-tiny-userns/g lxc/lxc-tiny-connectivity-profile-template | apparmor_parser -qr
  7. Make sure user have correct mappings for test:
  8. $ usermod --add-subuids 1000-1000 user
    $ usermod --add-subuids 100000-165535 user
    $ usermod --add-subgids 1000-1000 user
    $ usermod --add-subgids 100000-165535 user
  9. Check the basic functionality of container:
  10. $ sudo -u user -H lavatests/check-tiny-containers --ospack "$OSPACK" -t lxc/lxc-tiny-connectivity --aa-namespace "lxc-apertis-tiny-userns"


Test command should report "pass".