In docker logs -f netdata I continously get:
time=2024-04-02T09:39:27.433+02:00 comm=netdata source=collector level=error errno="13, Permission denied" tid=3852710 thread=P[cgroups] msg="CGROUP: cannot read directory '/host/sys/fs/cgroup'"
Tried with and without proxy, but still get Permission denied.
Running with this docker-compose.yml:
version: '3'
services:
netdata:
image: netdata/netdata:stable
container_name: netdata
hostname: fqdn # set to fqdn of host
deploy:
resources:
limits:
cpus: '1.0'
memory: 1G
pid: host
restart: unless-stopped
network_mode: host
cap_add:
- SYS_PTRACE
- SYS_ADMIN
security_opt:
- apparmor:unconfined
environment:
- DOCKER_HOST=proxy:2375
volumes:
- netdataconfig:/etc/netdata
- netdatalib:/var/lib/netdata
- netdatacache:/var/cache/netdata
- /etc/passwd:/host/etc/passwd:ro
- /etc/group:/host/etc/group:ro
- /etc/localtime:/etc/localtime:ro
- /proc:/host/proc:ro
- /sys:/host/sys:ro
- /etc/os-release:/host/etc/os-release:ro
- /var/log:/host/var/log:ro
- /var/run/docker.sock:/var/run/docker.sock:ro
- /run/dbus:/run/dbus:ro
extra_hosts:
- "fqdn:10.10.10.10"
proxy:
container_name: netdata-proxy
image: tecnativa/docker-socket-proxy
network_mode: host
environment:
- CONTAINERS=1
volumes:
- /var/run/docker.sock:/var/run/docker.sock:ro
volumes:
netdataconfig:
netdatalib:
netdatacache: