projects
/
matthijs
/
servers
/
tika.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
lxc: Bindmount /etc/skel in all containers.
[matthijs/servers/tika.git]
/
var
/
lib
/
lxc
/
ldap
/
config
diff --git
a/var/lib/lxc/ldap/config
b/var/lib/lxc/ldap/config
index fc6c1c08266f19bfe42d6916c564bfdb62434f31..de39d44fefcb9152724a0e89461eeae21d4bd631 100644
(file)
--- a/
var/lib/lxc/ldap/config
+++ b/
var/lib/lxc/ldap/config
@@
-1,5
+1,5
@@
# Hostname
# Hostname
-lxc.utsname = ldap
+lxc.utsname = ldap
.local
# Use this root filesystem
lxc.rootfs = /containers/ldap
# Use this root filesystem
lxc.rootfs = /containers/ldap
@@
-53,6
+53,9
@@
lxc.cgroup.devices.allow = c 254:0 rwm
# to the rootfs)
lxc.mount.entry=proc proc proc nodev,noexec,nosuid 0 0
lxc.mount.entry=sysfs sys sysfs defaults 0 0
# to the rootfs)
lxc.mount.entry=proc proc proc nodev,noexec,nosuid 0 0
lxc.mount.entry=sysfs sys sysfs defaults 0 0
+lxc.mount.entry=/data/db/ldap data/db/ldap none defaults,bind 0 0
+lxc.mount.entry=/data/users data/users none defaults,bind 0 0
+lxc.mount.entry=/etc/skel etc/skel none defaults,bind,ro 0 0
# Disallow module (un)loading
lxc.cap.drop = sys_module
# Disallow module (un)loading
lxc.cap.drop = sys_module