- Registrado
- 29 de Ene, 2021
It definitely didn't when I initially set it up a year ago and this recent article seems to agree that it's flaky if it works at all. Not making any claims to how valid it is.?
It works fine w/o privileges as long as you keep the nesting flag enabled.
Ver archivo adjunto 9182663
For the .1% of people that care this is what I had to add to the conf to get nested containerization working:
Código:
lxc.apparmor.profile: unconfined
lxc.cgroup.devices.allow: a
lxc.cap.drop:
lxc.mount.auto: "proc:rw sys:rw"