Skip to content

Commit 07ff00e

Browse files
AkihiroSudaTim Bannister
andcommitted
user-namespaces.md: subid count per pod is hard-coded to 65536
The number of subuids and subgids for each of pods is hard-coded to 65536, regardless to the total ID count specified in `/etc/subuid` and `/etc/subgid`: https://github.com/kubernetes/kubernetes/blob/v1.32.0/pkg/kubelet/userns/userns_manager.go#L211-L228 This fact was not clarified in the documentation. Co-authored-by: Tim Bannister <[email protected]> Signed-off-by: Akihiro Suda <[email protected]>
1 parent 4ebe365 commit 07ff00e

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

content/en/docs/concepts/workloads/pods/user-namespaces.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -177,6 +177,8 @@ to the `kubelet` user:
177177
configuration.
178178

179179
* The subordinate ID count must be a multiple of 65536
180+
(for Kubernetes {{< skew currentVersion >}} the subordinate ID count for each Pod is hard-coded
181+
to 65536).
180182

181183
* The subordinate ID count must be at least `65536 x <maxPods>` where `<maxPods>`
182184
is the maximum number of pods that can run on the node.

0 commit comments

Comments
 (0)