mirror_lxc/config/templates
Dennis Schridde 00ec0cc72c Adopt capability drop explanations from other distros on Gentoo, drop setpcap,sys_nice caps
Documents setpcap,sys_admin,sys_resources as breaking systemd, but does not drop them from lxc.cap.drop, as the default init system on Gentoo is OpenRC, thus stuff breaking systemd can be blocked anyway.

This also drops setpcap and sys_nice caps, as these are also dropped in other non-systemd distros.

Most of the explanatory blurb was copied from other distros' configs.

See-Also: https://bugs.gentoo.org/show_bug.cgi?id=551792

Signed-Off-By: Dennis Schridde <devurandom@gmx.net>
2015-06-13 09:56:31 +02:00
..
common.conf.d Add common.conf.d 2015-01-20 23:32:22 -05:00
archlinux.common.conf.in Use consistent /proc, /sys and /sys/fs/cgroup (v2) 2015-01-29 11:44:02 +01:00
archlinux.userns.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
centos.common.conf.in Use consistent /proc, /sys and /sys/fs/cgroup (v2) 2015-01-29 11:44:02 +01:00
centos.userns.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
common.conf.in config: Allow all containers to use fuse 2015-02-08 18:26:21 +02:00
common.seccomp seccomp: add rule to reject umount -f 2014-12-19 13:42:47 -05:00
debian.common.conf.in config: Allow all containers to use fuse 2015-02-08 18:26:21 +02:00
debian.userns.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
fedora.common.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
fedora.userns.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
gentoo.common.conf.in templates: gentoo.common: Add /dev/shm tmpfs mount entry 2015-03-12 20:53:10 +00:00
gentoo.moresecure.conf.in Adopt capability drop explanations from other distros on Gentoo, drop setpcap,sys_nice caps 2015-06-13 09:56:31 +02:00
gentoo.userns.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
Makefile.am Add common.conf.d 2015-01-20 23:32:22 -05:00
opensuse.common.conf.in Turn autodev on by default 2015-01-20 19:47:14 -05:00
opensuse.userns.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
openwrt.common.conf.in config: Allow all containers to use fuse 2015-02-08 18:26:21 +02:00
oracle.common.conf.in Use consistent /proc, /sys and /sys/fs/cgroup (v2) 2015-01-29 11:44:02 +01:00
oracle.userns.conf.in Reduce duplication in new style configs 2014-06-24 16:40:48 -04:00
plamo.common.conf.in config: Allow all containers to use fuse 2015-02-08 18:26:21 +02:00
plamo.userns.conf.in lxc-plamo: remove unnecessary lxc.autodev=0 2015-01-27 13:40:18 +00:00
ubuntu-cloud.common.conf.in Move some common Ubuntu config 2013-12-06 11:21:46 -05:00
ubuntu-cloud.lucid.conf.in Move some common Ubuntu config 2013-12-06 11:21:46 -05:00
ubuntu-cloud.userns.conf.in download: Initial template 2014-01-12 19:21:49 -05:00
ubuntu.common.conf.in config: Allow all containers to use fuse 2015-02-08 18:26:21 +02:00
ubuntu.lucid.conf.in Move some common Ubuntu config 2013-12-06 11:21:46 -05:00
ubuntu.userns.conf.in Enable default seccomp profile for all distros 2014-07-01 23:41:11 -04:00
userns.conf.in Enable seccomp by default for unprivileged users. 2014-12-19 13:42:54 -05:00