You are viewing a plain text version of this content. The canonical link for it is here.
Posted to yarn-issues@hadoop.apache.org by "Eric Yang (JIRA)" <ji...@apache.org> on 2019/03/15 17:06:00 UTC
[jira] [Created] (YARN-9391) Disable PATH variable to be passed to
Docker container
Eric Yang created YARN-9391:
-------------------------------
Summary: Disable PATH variable to be passed to Docker container
Key: YARN-9391
URL: https://issues.apache.org/jira/browse/YARN-9391
Project: Hadoop YARN
Issue Type: Sub-task
Reporter: Eric Yang
This is observed from using Apache NiFi docker image. It makes assumption that PATH variable contains /bin to reference to system utility. Where host YARN environment PATH variable is default to leaked into container by accident and not containing /bin path (default configuration). In general, it seems like node manager should block PATH variable from leaking into container. Not sure if there is a valid use case that host PATH variable must leak into container from docker point of view. From Hadoop point of view, if container is merely a chroot, and container is a mirror image of host worker dir. It is good to keep host PATH variable the same.
Maybe we want to be more specific that block PATH variable to leak into Docker container, if it is using ENTRYPOINT only?
--
This message was sent by Atlassian JIRA
(v7.6.3#76005)
---------------------------------------------------------------------
To unsubscribe, e-mail: yarn-issues-unsubscribe@hadoop.apache.org
For additional commands, e-mail: yarn-issues-help@hadoop.apache.org