Docker 在 hello-world 中失败:无法注册层:重新挂载/,权限被拒绝

Docker 在 hello-world 中失败:无法注册层:重新挂载/,权限被拒绝

我刚刚在一个上安装了 docker数据块集群节点,这是操作系统信息:

Distributor ID: Ubuntu
Description:    Ubuntu 22.04.3 LTS
Release:        22.04
Codename:       jammy

我把 docker info 放在最后,因为它太长了。

我在用用户将根目录更改为/tmp具有 777 权限,但是当我运行docker pull或时docker run,它总是尝试重新挂载并显示权限被拒绝,如下所示:

docker pull hello-world
Using default tag: latest
latest: Pulling from library/hello-world
719385e32844: Extracting [==================================================>]  2.457kB/2.457kB
failed to register layer: remount /, flags: 0x84000: permission denied

我尝试mount -o remount,rw /使用ROOT用户运行但仍然失败:

mount: /: cannot remount /var/lib/lxc/base-images/release__13.3.x-snapshot-photon-scala2.12__databricks-universe__13.3.5__6980ecb__4a6d433__jenkins__f40af97__format-3 read-write, is write-protected.

我尝试通过运行来检查 Databricks 笔记本上的挂载信息display(dbutils.fs.mounts()),它只能在该目录中工作/dbfs,并且该目录对于 Docker 来说是不可接受的。

如何解决这个问题?任何帮助表示赞赏。

码头工人信息:

Client: Docker Engine - Community
 Version:    24.0.7
 Context:    default
 Debug Mode: false
 Plugins:
  buildx: Docker Buildx (Docker Inc.)
    Version:  v0.11.2
    Path:     /usr/libexec/docker/cli-plugins/docker-buildx
  compose: Docker Compose (Docker Inc.)
    Version:  v2.21.0
    Path:     /usr/libexec/docker/cli-plugins/docker-compose

Server:
 Containers: 0
  Running: 0
  Paused: 0
  Stopped: 0
 Images: 0
 Server Version: 24.0.7
 Storage Driver: vfs
 Logging Driver: json-file
 Cgroup Driver: cgroupfs
 Cgroup Version: 1
 Plugins:
  Volume: local
  Network: bridge host ipvlan macvlan null overlay
  Log: awslogs fluentd gcplogs gelf journald json-file local logentries splunk syslog
 Swarm: inactive
 Runtimes: io.containerd.runc.v2 runc
 Default Runtime: runc
 Init Binary: docker-init
 containerd version: 61f9fd88f79f081d64d6fa3bb1a0dc71ec870523
 runc version: v1.1.9-0-gccaecfc
 init version: de40ad0
 Security Options:
  seccomp
   Profile: builtin
 Kernel Version: 5.15.0-1048-aws
 Operating System: Ubuntu 22.04.3 LTS
 OSType: linux
 Architecture: x86_64
 CPUs: 4
 Total Memory: 24.9GiB
 Name: 1107-091517-sgtior5x-10-201-64-203
 ID: 3d720a3d-2121-42d7-9e47-32b9e675241b
 Docker Root Dir: /tmp
 Debug Mode: false
 Experimental: false
 Insecure Registries:
  127.0.0.0/8
 Live Restore Enabled: false

相关内容