09-05-2022 06:21 AM
Problem: Unable to use Linux capabilities for App-Hosting containers
Description: The Cisco switch 9500-48Y4C provides the list of unsupported Docker runtime options as mentioned here:
https://developer.cisco.com/docs/app-hosting/#!application-hosting-configuration/list-of-unsupported-docker-runtime-options
Therefore, we could not use Linux capabilities e.g., via --privileged. I understand that this might introduce security concerns. As far as I tried, only Linux net_admin is allowed. As we are using the switch for the experiments (i.e., not for commercial use), I would like to ask whether there is any way to use other Linux capabilities. We are also interested if there should be a license to do that. If it is the case, please let me know which license Cisco could offer.
09-05-2022 06:35 AM
That still limitration as of now 17.3.5 code, not sure future release may have different support like 17.8.X
09-05-2022 07:07 AM
Yes, it seems to me that 17.9 also supports net_admin only:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/prog/configuration/179/b_179_programmability_cg/m_178_prog_app_hosting.html#id_135754
Instead of waiting for a new release, I am really curious whether there are any other ways to look for the support of other Linux capabilities.
09-05-2022 08:52 AM
if the feature is more important,. i would rather host my own linux box or RasPi to work.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide