nspawn: fix --image= when nspawn is run as service
nspawn needs access to /dev/loop to implement --image=, hence grant that in the service file. Fixes #1446.
This commit is contained in:
parent
8580d1f73d
commit
988a479642
|
@ -35,5 +35,10 @@ DeviceAllow=/dev/net/tun rwm
|
|||
DeviceAllow=/dev/pts/ptmx rw
|
||||
DeviceAllow=char-pts rw
|
||||
|
||||
# nspawn itself needs access to /dev/loop-control and /dev/loop, to
|
||||
# implement the --image= option. Add these here, too.
|
||||
DeviceAllow=/dev/loop-control rw
|
||||
DeviceAllow=block-loop rw
|
||||
|
||||
[Install]
|
||||
WantedBy=machines.target
|
||||
|
|
Loading…
Reference in New Issue