Centos:fn start:在 /sys/kernel/security 上安装 none 失败:权限被拒绝

Centos: fn start : mounting none on /sys/kernel/security failed: Permission denied

https://github.com/fnproject/fn

安装 fn 后

我运行“fn start”作为root

我收到以下错误

[root@localhost my-docker-app]# fn start
sh: overlay: unknown operand
mount: mounting none on /sys/kernel/security failed: Permission denied
Could not mount /sys/kernel/security.
AppArmor detection and --privileged mode might break.
mount: permission denied (are you root?)
time="2017-10-07T09:42:36Z" level=error msg="couldn't ping db" error="unable to open database file" url=/app/data/fn.db
time="2017-10-07T09:42:36Z" level=fatal msg="Error initializing datastore." error="unable to open database file"
2017/10/07 11:42:37 error: proce

ssed finished with error exit status 1

有什么帮助吗?

centos版本和fn版本

[root@localhost my-docker-app]# cat /etc/os-release
NAME="CentOS Linux"
VERSION="7 (Core)"
ID="centos"
ID_LIKE="rhel fedora"
VERSION_ID="7"
PRETTY_NAME="CentOS Linux 7 (Core)"
ANSI_COLOR="0;31"
CPE_NAME="cpe:/o:centos:centos:7"
HOME_URL="https://www.centos.org/"
BUG_REPORT_URL="https://bugs.centos.org/"

CENTOS_MANTISBT_PROJECT="CentOS-7"
CENTOS_MANTISBT_PROJECT_VERSION="7"
REDHAT_SUPPORT_PRODUCT="centos"
REDHAT_SUPPORT_PRODUCT_VERSION="7"

[root@localhost my-docker-app]# fn version
Client version: 0.4.7
ERROR: Get http://localhost:8080/version: dial tcp [::1]:8080: getsockopt: connection refused
[root@localhost my-docker-app]# 

您需要禁用安全增强Linux (SELinux),这是由于这个原因造成的。

以 root 身份发出以下命令以暂时禁用 selinux

$ setenforce 0

  • vi /etc/sysconfig/selinux
  • 改变SELINUX的值如下
  • SELINUX=禁用
  • 重启