 How to Configure, Verify, and Commit the lx Branded
Zone
How to Configure, Verify, and Commit the lx Branded
ZoneNote that you cannot use lx branded zones on a Trusted Solaris system where labels are enabled. The zoneadm command will not verify the configuration.
You must be the global administrator in the global zone to perform this procedure.
Become superuser, or assume the Primary Administrator role.
To create the role and assign the role to a user, see Using the Solaris Management Tools With RBAC (Task Map) in System Administration Guide: Basic Administration.
Set up a zone configuration with the zone name you have chosen.
The name lx-zone is used in this example procedure.
| global# zonecfg -z lx-zone | 
If this is the first time you have configured this zone, you will see the following system message:
| lx-zone: No such zone configured Use 'create' to begin configuring a new zone. | 
Create the new lx zone configuration by using the SUNWlx template.
| zonecfg:lx-zone> create -t SUNWlx | 
Alternatively, you can create a blank zone and explicitly set the brand:
| zonecfg:lx-zone> create -b zonecfg:lx-zone> set brand=lx | 
Set the zone path, /export/home/lx-zone in this procedure.
| zonecfg:lx-zone> set zonepath=/export/home/lx-zone | 
Set the autoboot value.
If set to true, the zone is automatically booted when the global zone is booted. Note that for the zones to autoboot, the zones service svc:/system/zones:default must also be enabled. The default value is false.
| zonecfg:lx-zone> set autoboot=true | 
Set persistent boot arguments for a zone.
| zonecfg:lx-zone> set bootargs="-i=altinit" | 
If resource pools are enabled on your system, associate a pool with the zone.
This example uses the default pool, named pool_default.
| zonecfg:lx-zone> set pool=pool_default | 
Because a resource pool can have an optional scheduling class assignment, you can use the pools facility to set a default scheduler other than the system default for a non-global zone. For instructions, see How to Associate a Pool With a Scheduling Class and Creating the Configuration.
Revise the default set of privileges.
| zonecfg:lx-zone> set limitpriv="default,proc_priocntl" | 
The proc_priocntl privilege is used to run processes in the real-time class.
Set five CPU shares.
| zonecfg:lx-zone> set cpu-shares=5 | 
Add a memory cap.
| zonecfg:lx-zone> add capped-memory | 
Add a file system.
| zonecfg:lx-zone> add fs | 
Set the mount point for the file system, /export/linux/local in this procedure.
| zonecfg:lx-zone:fs> set dir=/export/linux/local | 
Specify that /opt/local in the global zone is to be mounted as /export/linux/local in the zone being configured.
| zonecfg:lx-zone:fs> set special=/opt/local | 
In the non-global zone, the /export/linux/local file system will be readable and writable.
Specify the file system type, lofs in this procedure.
| zonecfg:lx-zone:fs> set type=lofs | 
The type indicates how the kernel interacts with the file system.
End the file system specification.
| zonecfg:lx-zone:fs> end | 
This step can be performed more than once to add more than one file system.
Add a network interface.
| zonecfg:lx-zone> add net | 
Set the IP address in the form ip address of zone/netmask. In this procedure, 10.6.10.233/24 is used.
| zonecfg:lx-zone:net> set address=10.6.10.233/24 | 
Set the physical device type for the network interface, the bge device in this procedure.
| zonecfg:lx-zone:net> set physical=bge0 | 
(Optional) Set the default router for the network interface, 10.0.0.1 in this procedure.
| zonecfg:my-zone:net> set defrouter=10.0.0.1 | 
End the specification.
| zonecfg:lx-zone:net> end | 
This step can be performed more than once to add more than one network interface.
Enable an audio device present in the global zone in this zone by using the attr resource type.
| zonecfg:lx-zone> add attr | 
Verify the zone configuration for the zone.
| zonecfg:lx-zone> verify | 
Commit the zone configuration for the zone.
| zonecfg:lx-zone> commit | 
Exit the zonecfg command.
| zonecfg:lx-zone> exit | 
Note that even if you did not explicitly type commit at the prompt, a commit is automatically attempted when you type exit or an EOF occurs.
The zonecfg command also supports multiple subcommands, quoted and separated by semicolons, from the same shell invocation.
| global# zonecfg -z lx-zone "create -t SUNWlx; set zonepath=/export/home/lx-zone" |