]> git.ipfire.org Git - thirdparty/systemd.git/commitdiff
units: disable /dev/hugepages in private user namespaces 4442/head
authorZbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl>
Sat, 22 Oct 2016 03:00:38 +0000 (23:00 -0400)
committerZbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl>
Thu, 27 Oct 2016 00:12:52 +0000 (20:12 -0400)
The mount fails, even though CAP_SYS_ADMIN is granted.

units/dev-hugepages.mount

index 882adb4545ae5b1bcd7bc7fe5bd3bab286d141f1..489cc777e40a2e2233c5247530640106d2770a33 100644 (file)
@@ -13,6 +13,7 @@ DefaultDependencies=no
 Before=sysinit.target
 ConditionPathExists=/sys/kernel/mm/hugepages
 ConditionCapability=CAP_SYS_ADMIN
+ConditionVirtualization=!private-users
 
 [Mount]
 What=hugetlbfs