units: set ConditionVirtualization=!private-users on journald audit socket (#6508)

It fails to start in an unprivileged container as audit is not namespace aware.
This commit is contained in:
Dimitri John Ledkov 2017-08-02 09:15:26 +01:00 committed by Martin Pitt
parent ebc6f34a0b
commit d2a1ba103b

View file

@ -12,6 +12,7 @@ DefaultDependencies=no
Before=sockets.target Before=sockets.target
ConditionSecurity=audit ConditionSecurity=audit
ConditionCapability=CAP_AUDIT_READ ConditionCapability=CAP_AUDIT_READ
ConditionVirtualization=!private-users
[Socket] [Socket]
Service=systemd-journald.service Service=systemd-journald.service