{"repo":"Mic92/cntr","free":true,"listed":false,"github":"https://github.com/Mic92/cntr","clone":"git clone https://github.com/Mic92/cntr.git","description":"A container debugging tool based on FUSE","language":"Rust","stars":951,"topics":["docker","lxc","rkt","systemd-nspawn","build-with-buildbot"],"license":"MIT","category":"deployment-docker-iac","readme_excerpt":"cntr Say no to $ apt install vim in containers! cntr is a replacement for docker exec that brings all your developers tools with you. This is done by mounting the file system from one container or the host into the target container by creating a nested container with the help of the Linux mount API. This allows to ship minimal runtime image in production and limit the surface for exploits. Requirements : Linux kernel 5.2 or later (uses fsopen/fsmount mount API, added in 5.2). Cntr was also published in Usenix ATC 2018. See bibtex for citation. Note: The academic paper describes the original FUSE-based architecture. As of version 2.0.0, cntr has been rewritten to use the Linux mount API instead of FUSE, significantly improving performance and security while maintaining the same user interface and capabilities. What you get What this means for you: - Use your familiar tools (vim, gdb, strace) even if they're not in the container - Access container files at /var/lib/cntr/etc/ , /var/lib/cntr/var/ , etc. - Same network, process tree, and environment as the container - Original container keeps running normally - your changes only affect your session - Run native container commands with cntr exec Demo In this two minute recording you learn all the basics of cntr: Features - For convenience cntr supports container names/identifier for the following container engines natively: docker podman LXC LXD systemd-nspawn containerd k3s (via containerd/crictl) - For other container engines cn","default_branch":null,"files":null,"tree":[],"storefront":"/r/Mic92","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Mic92/cntr/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}