mirror of
https://github.com/containers/udica
synced 2024-05-25 01:56:14 +02:00
d6e5a0d99a
Signed-off-by: Vit Mojzis <vmojzis@redhat.com>
6 lines
254 B
Plaintext
6 lines
254 B
Plaintext
(block my_container
|
|
(blockinherit container)
|
|
(blockinherit virt_container)
|
|
(allow process process ( capability ( audit_write chown dac_override fowner fsetid kill mknod net_bind_service net_raw setfcap setgid setpcap setuid sys_chroot )))
|
|
|
|
) |