fix(gluetun): remove shell wrapper, use default entrypoint
The /gluetun binary has restrictive permissions and cannot be exec'd from a shell wrapper. The OOM fix (512Mi limit) prevents the crashes that caused stale ip rules, so the wrapper is not needed.
This commit is contained in:
@@ -30,15 +30,6 @@ spec:
|
|||||||
# VPN container — must come first so network is up before qBittorrent starts
|
# VPN container — must come first so network is up before qBittorrent starts
|
||||||
- name: gluetun
|
- name: gluetun
|
||||||
image: ghcr.io/qdm12/gluetun:latest
|
image: ghcr.io/qdm12/gluetun:latest
|
||||||
# Clean up stale ip rules before starting — handles both pod restarts and container-only restarts
|
|
||||||
# (initContainer only runs on pod restart; this command runs on every container start)
|
|
||||||
command: ["/bin/sh", "-c"]
|
|
||||||
args:
|
|
||||||
- |
|
|
||||||
ip rule del priority 101 2>/dev/null || true
|
|
||||||
ip route flush table 51820 2>/dev/null || true
|
|
||||||
ip rule del table 51820 2>/dev/null || true
|
|
||||||
exec /gluetun
|
|
||||||
securityContext:
|
securityContext:
|
||||||
capabilities:
|
capabilities:
|
||||||
add: ["NET_ADMIN"]
|
add: ["NET_ADMIN"]
|
||||||
|
|||||||
Reference in New Issue
Block a user