# Run the official docker image with k8s failed

**URL:** <https://discuss.elastic.co/t/run-the-official-docker-image-with-k8s-failed/101571>\
**Category:** Beats\
**Tags:** filebeat\
**Created:** [September 23, 2017, 2:29pm UTC](https://discuss.elastic.co/t/run-the-official-docker-image-with-k8s-failed/101571 "2017-09-23T14:29:15Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![pnuzyf](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/pnuzyf/32/22450_2.png) [@pnuzyf](https://discuss.elastic.co/u/pnuzyf)\
**Post date:** [September 23, 2017, 2:29pm UTC](https://discuss.elastic.co/t/run-the-official-docker-image-with-k8s-failed/101571/1 "2017-09-23T14:29:15Z")

</div>

I got the following message:

Message: oci runtime error: container\_linux.go:262: starting container process caused "exec: "filebeat": executable file not found

my daemonset.yaml :

apiVersion: extensions/v1beta1  
kind: DaemonSet  
metadata:  
name: filebeat  
namespace: kube-system  
labels:  
app: filebeat  
spec:  
template:  
metadata:  
labels:  
app: filebeat  
name: filebeat  
spec:  
containers:

- name: filebeat  
image: [docker.elastic.co/beats/filebeat:5.6.1](http://docker.elastic.co/beats/filebeat:5.6.1)  
env:
- name: LOGSTASH\_HOSTS  
value: logstash:5044
- name: LOG\_LEVEL  
value: info
- name: FILEBEAT\_HOST  
valueFrom:  
fieldRef:  
fieldPath: spec.nodeName  
volumeMounts:
- name: varlog  
mountPath: /var/log/containers
- name: varlogpods  
mountPath: /var/log/pods  
readOnly: true
- name: varlibdockercontainers  
mountPath: /var/lib/docker/containers  
readOnly: true
- name: filebeat-config  
mountPath: /usr/share/filebeat
- name: registry  
mountPath: /usr/share/filebeat/data  
terminationGracePeriodSeconds: 30  
volumes:
- name: varlog  
hostPath:  
path: /var/log/containers
- name: varlogpods  
hostPath:  
path: /var/log/pods
- name: varlibdockercontainers  
hostPath:  
path: /var/lib/docker/containers
- name: filebeat-config  
configMap:  
name: filebeat-config
- name: registry  
hostPath:  
path: /var/lib/filebeat/data

---

<div class="post-metadata">

**Author:** ![exekias](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/exekias/32/28718_2.png) [@exekias](https://discuss.elastic.co/u/exekias)\
**Post date:** [September 23, 2017, 3:31pm UTC](https://discuss.elastic.co/t/run-the-official-docker-image-with-k8s-failed/101571/2 "2017-09-23T15:31:08Z")

</div>

Hi @pnuzyf,

Could you please check your image actually works? I can do this with the official filebeat:

```auto
$ docker run docker.elastic.co/beats/filebeat:5.6.1 filebeat -e -v
2017/09/23 15:29:30.222723 beat.go:297: INFO Home path: [/usr/share/filebeat] Config path: [/usr/share/filebeat] Data path: [/usr/share/filebeat/data] Logs path: [/usr/share/filebeat/logs]
2017/09/23 15:29:30.222768 beat.go:192: INFO Setup Beat: filebeat; Version: 5.6.1
2017/09/23 15:29:30.223121 metrics.go:23: INFO Metrics logging every 30s

```

Does it work in the same way with your tag?

---

<div class="post-metadata">

**Author:** ![pnuzyf](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/pnuzyf/32/22450_2.png) [@pnuzyf](https://discuss.elastic.co/u/pnuzyf)\
**Post date:** [September 25, 2017, 12:59am UTC](https://discuss.elastic.co/t/run-the-official-docker-image-with-k8s-failed/101571/3 "2017-09-25T00:59:44Z")

</div>

Thank you for your kind reply!

yes, I can execute "docker run [docker.elastic.co/beats/filebeat](http://docker.elastic.co/beats/filebeat)". However, when I run this image with kubernetes , I got the following error message "oci runtime error: container\_linux.go:262: starting container process caused "exec: "filebeat": executable file not found".

---

<div class="post-metadata">

**Author:** ![exekias](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/exekias/32/28718_2.png) [@exekias](https://discuss.elastic.co/u/exekias)\
**Post date:** [September 25, 2017, 1:33pm UTC](https://discuss.elastic.co/t/run-the-official-docker-image-with-k8s-failed/101571/5 "2017-09-25T13:33:00Z")

</div>

I'm wondering: does it work in the same way for your own tag?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [October 23, 2017, 1:33pm UTC](https://discuss.elastic.co/t/run-the-official-docker-image-with-k8s-failed/101571/6 "2017-10-23T13:33:03Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
