mirror of
https://github.com/morgan9e/systemd
synced 2026-04-14 16:37:19 +09:00
We really don't want these in containers as they provide a too lowlevel look on the system. Conditionalize them with CAP_SYS_RAWIO since that's required to access /proc/kcore, /dev/kmem and similar, which feel similar in style. Also, npsawn containers lack that capability.
662 B
662 B