Skip to content

atelet: add --actor-nofile-limit for actor containers - #42

Draft
ygao-g wants to merge 1 commit into
ocispec-nofile-limit-basefrom
ocispec-nofile-limit
Draft

ygao-g wants to merge 1 commit into
ocispec-nofile-limit-basefrom
ocispec-nofile-limit

Conversation

@ygao-g

@ygao-g ygao-g commented Oct 1, 2026 •

Copy link
Copy Markdown
Owner

Adds an atelet flag, --actor-nofile-limit, that sets the soft and hard RLIMIT_NOFILE in the OCI spec written for every actor container on the node. The default stays 1024, so the spec is unchanged unless the flag is set, and atelet refuses to start with a value outside [1, 1<<20].

Motivation: a load generator running as an actor hit the hard-coded 1024 descriptor ceiling during actor-egress benchmarking. The patched atelet in that benchmark is this commit on an older base; with the flag at 65536 a probe actor opened 1600 sockets.

Operational caveat: runsc rejects a restore whose rlimits differ from the checkpoint's, so changing the flag on a node makes its existing snapshots unrestorable until they are recut. Whether this should instead be a per-template field is the open question for upstream.

Base is pinned at upstream b5ad4b35 so the diff is exactly the one commit under review. Intended for upstream after review here.

Commit Subject
16c9cc4b atelet: add --actor-nofile-limit for actor containers

🤖 This PR was developed with AI assistance. I have reviewed and tested all changes.

The OCI spec builder hard-coded RLIMIT_NOFILE at 1024 for every actor
container. Add a new atelet flag to set the soft and hard limit for actor
containers node-wide, with 1024 as default.
@ygao-g
ygao-g force-pushed the ocispec-nofile-limit branch from c5454cf to 16c9cc4 Compare October 1, 2026 18:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant