diff --git a/man/rules/meson.build b/man/rules/meson.build
index fdec807cb2..b8b8360ac3 100644
--- a/man/rules/meson.build
+++ b/man/rules/meson.build
@@ -1137,6 +1137,7 @@ manpages = [
'systemd-sysext-initrd.service',
'systemd-sysext.service'],
'ENABLE_SYSEXT'],
+ ['sysext.conf', '5', ['confext.conf'], 'ENABLE_SYSEXT'],
['systemd-system-update-generator', '8', [], ''],
['systemd-system.conf',
'5',
diff --git a/man/sysext.conf.xml b/man/sysext.conf.xml
new file mode 100644
index 0000000000..cdd88f2447
--- /dev/null
+++ b/man/sysext.conf.xml
@@ -0,0 +1,89 @@
+
+
+
+
+
+
+
+ sysext.conf
+ systemd
+
+
+
+ sysext.conf
+ 5
+
+
+
+ sysext.conf
+ confext.conf
+ sysext.conf.d
+ confext.conf.d
+ Configuration files for systemd-sysext
+
+
+
+ /etc/systemd/sysext.conf
+ /etc/systemd/sysext.conf.d/*.conf
+ /run/systemd/sysext.conf
+ /run/systemd/sysext.conf.d/*.conf
+ /usr/lib/systemd/sysext.conf
+ /usr/lib/systemd/sysext.conf.d/*.conf
+ /etc/systemd/confext.conf
+ /etc/systemd/confext.conf.d/*.conf
+ /run/systemd/confext.conf
+ /run/systemd/confext.conf.d/*.conf
+ /usr/lib/systemd/confext.conf
+ /usr/lib/systemd/confext.conf.d/*.conf
+
+
+
+ Description
+
+ These configuration files control the behavior of
+ systemd-sysext8 and
+ systemd-confext8.
+ They are especially useful when needing to customize the behavior of the
+ respective extension service units.
+
+
+
+
+
+ Options
+
+ The following options are understood in both the [Sysext] and
+ [Confext] sections:
+
+
+ Section Options
+
+
+
+ Mutable=
+ Set the mutable mode for system extensions. Takes one of no,
+ yes, auto, import,
+ ephemeral, or ephemeral-import. For details about the modes,
+ see the option in
+ systemd-sysext8.
+ Defaults to no.
+
+
+
+
+
+
+
+
+
+ See Also
+
+ systemd1
+ systemd-sysext8
+ systemd.syntax7
+
+
+
+
diff --git a/man/systemd-sysext.xml b/man/systemd-sysext.xml
index 07e97071a5..8705fa7275 100644
--- a/man/systemd-sysext.xml
+++ b/man/systemd-sysext.xml
@@ -74,7 +74,12 @@
System extension images are strictly read-only by default. On mutable host file systems,
/usr/ and /opt/ hierarchies become read-only while extensions
are merged, unless mutability is enabled. Mutability may be enabled via the
- option; see "Mutability" below for more information.
+ option and the Mutable= option in the configuration file;
+ see "Mutability" below for more information.
+
+ Various command options can be configured globally via configuration files. See
+ sysext.conf5
+ for details.System extensions are supposed to be purely additive, i.e. they are supposed to include only files
that do not exist in the underlying basic OS image. However, the underlying mechanism (overlayfs) also
@@ -477,6 +482,7 @@
See Alsosystemd1
+ sysext.conf5systemd-nspawn1systemd-stub7importctl1