You'll probably need to run it using dockers host mode networking, not
using a container specific network namespace. The iSCSI netlink control
code in the kernel is not network namespace aware, and can only be
accessed from the default/original network namespace (that's the IPC
socket). Not being able to use a new network namespace also means that
you can only run a single iscsid instance on the system.
I had the start of a kernel patch series to deal with this posted a
while back. I never finished the sysfs object filtering by network
namespace for iSCSI, particularly moving the flash node db sysfs code
from bus to class devices to allow for namespace filtering was still an
open issue.
- Chris