3 lxc.rootfs = /var/lib/lxc/template/rootfs
5 # Deny all devices, except the following
6 lxc.cgroup.devices.deny = a
8 lxc.cgroup.devices.allow = c 1:3 rwm
10 lxc.cgroup.devices.allow = c 1:5 rwm
12 lxc.cgroup.devices.allow = c 5:1 rwm
14 lxc.cgroup.devices.allow = c 5:0 rwm
16 lxc.cgroup.devices.allow = c 4:0 rwm
18 lxc.cgroup.devices.allow = c 4:1 rwm
20 lxc.cgroup.devices.allow = c 1:9 rwm
21 lxc.cgroup.devices.allow = c 1:8 rwm
22 # /dev/pts/0 - /dev/pts/255
23 lxc.cgroup.devices.allow = c 136:* rwm
25 lxc.cgroup.devices.allow = c 5:2 rwm
27 lxc.cgroup.devices.allow = c 254:0 rwm
30 lxc.mount.entry=proc /var/lib/lxc/template/rootfs/proc proc nodev,noexec,nosuid 0 0
31 lxc.mount.entry=sysfs /var/lib/lxc/template/rootfs/sys sysfs defaults 0 0