docker run hello-world
報(bào)錯(cuò)
docker: Error response from daemon: OCI runtime create failed: container_linux.go:345: starting container process caused "process_linux.go:430: container init caused "write /proc/self/attr/keycreate: permission denied"": unknown.
解決方案:
修改 /etc/selinux/config中SELINUX=disabled
重啟服務(wù)器
PS:selinux是linux為了系統(tǒng)安全性做的控制,會(huì)控制用戶可以訪問(wèn)、讀取恭朗、修改哪些文件溶锭,比如晕讲,前面的write /proc/self/attr/keycreate文件沒(méi)有權(quán)限组橄,就是被selinux控制了关筒。
$ /usr/sbin/getenforce