mirror of
https://gitlab.com/libvirt/libvirt.git
synced 2024-12-27 16:15:23 +00:00
38 lines
1.1 KiB
Plaintext
38 lines
1.1 KiB
Plaintext
|
# Template used to create this container: opensuse
|
||
|
# Template script checksum (SHA-1): 27307e0a95bd81b2c0bd82d6f87fdbe83be075ef
|
||
|
|
||
|
lxc.network.type = veth
|
||
|
lxc.network.flags = up
|
||
|
lxc.network.link = virbr0
|
||
|
lxc.network.hwaddr = 02:00:15:8f:05:c1
|
||
|
lxc.network.name = eth0
|
||
|
|
||
|
#remove next line if host DNS configuration should not be available to container
|
||
|
lxc.mount.fstab = /var/lib/lxc/migrate_test/fstab
|
||
|
lxc.rootfs.path = /var/lib/lxc/migrate_test/rootfs
|
||
|
lxc.uts.name = migrate_test
|
||
|
lxc.autodev=1
|
||
|
lxc.tty.max = 2
|
||
|
lxc.pts = 1024
|
||
|
lxc.cap.drop = sys_module mac_admin mac_override mknod
|
||
|
|
||
|
# When using LXC with apparmor, uncomment the next line to run unconfined:
|
||
|
#lxc.aa_profile = unconfined
|
||
|
|
||
|
lxc.cgroup.devices.deny = a
|
||
|
# /dev/null and zero
|
||
|
lxc.cgroup.devices.allow = c 1:3 rwm
|
||
|
lxc.cgroup.devices.allow = c 1:5 rwm
|
||
|
# consoles
|
||
|
lxc.cgroup.devices.allow = c 5:1 rwm
|
||
|
lxc.cgroup.devices.allow = c 5:0 rwm
|
||
|
lxc.cgroup.devices.allow = c 4:0 rwm
|
||
|
lxc.cgroup.devices.allow = c 4:1 rwm
|
||
|
# /dev/{,u}random
|
||
|
lxc.cgroup.devices.allow = c 1:9 rwm
|
||
|
lxc.cgroup.devices.allow = c 1:8 rwm
|
||
|
lxc.cgroup.devices.allow = c 136:* rwm
|
||
|
lxc.cgroup.devices.allow = c 5:2 rwm
|
||
|
# rtc
|
||
|
lxc.cgroup.devices.allow = c 254:0 rwm
|