From 8a426a8adb6143a7966ab2f7217e5f4482257b5a Mon Sep 17 00:00:00 2001 From: Jakub Filo Date: Mon, 6 Sep 2021 23:19:16 +0000 Subject: [PATCH] Add 'examples/etc/systemd/nspawn/sandbox.nspawn' --- examples/etc/systemd/nspawn/sandbox.nspawn | 31 ++++++++++++++++++++++ 1 file changed, 31 insertions(+) create mode 100644 examples/etc/systemd/nspawn/sandbox.nspawn diff --git a/examples/etc/systemd/nspawn/sandbox.nspawn b/examples/etc/systemd/nspawn/sandbox.nspawn new file mode 100644 index 0000000..0f9233b --- /dev/null +++ b/examples/etc/systemd/nspawn/sandbox.nspawn @@ -0,0 +1,31 @@ +[Exec] +Boot=1 +# Next 2 lines for docker +Capability=all +SystemCallFilter=add_key keyctl + +PrivateUsers=no + +[Files] +#opengl +BindReadOnly=/tmp/.X11-unix +# Next line for docker +Bind=/sys/fs/cgroup +Bind=/dev/dri +#Bind=/dev/nvidia0 +#Bind=/dev/nvidiactl +#Bind=/dev/nvidia-modeset +Bind=/dev/shm + +# input +Bind=/dev/input + +# pulseaudio +Bind=/run/user/1000/pulse:/run/user/host/pulse + +# alsa +Bind=/dev/snd + + +# downloads +#Bind=/home/drew/Downloads