X-Git-Url: http://www.chiark.greenend.org.uk/ucgi/~ianmdlvl/git?a=blobdiff_plain;f=man%2Fsystemd-nspawn.xml;h=feafb31bc026f1da9f3ea3e3c3b80116365de039;hb=337fa161c40f26cb7c33847d666556d28905b6a9;hp=d9fb8998952846e1c7cb0b103680d83bfdc7b859;hpb=2aba426ffb345408a461ed0ff6fba46e63ae625b;p=elogind.git diff --git a/man/systemd-nspawn.xml b/man/systemd-nspawn.xml index d9fb89989..feafb31bc 100644 --- a/man/systemd-nspawn.xml +++ b/man/systemd-nspawn.xml @@ -136,22 +136,25 @@ As a safety check systemd-nspawn will verify the - existance of /etc/os-release in + existence of /etc/os-release in the container tree before starting the container (see os-release5). It might be necessary to add this file to the container tree manually if the OS of the container is too old to contain this file out-of-the-box. + + + + Incompatibility with Auditing Note that the kernel auditing subsystem is currently broken when used together with containers. We hence recommend turning it off entirely - when using systemd-nspawn by - booting with audit=0 on the kernel - command line, or by turning it off at kernel build - time. If auditing is enabled in the kernel operating - systems booted in an nspawn container might refuse - log-in attempts. + by booting with audit=0 on the + kernel command line, or by turning it off at kernel + build time. If auditing is enabled in the kernel + operating systems booted in an nspawn container might + refuse log-in attempts. @@ -239,7 +242,7 @@ - Set the specified uuid + Set the specified UUID for the container. The init system will initialize /etc/machine-id @@ -271,7 +274,7 @@ Mount the root file - system read only for the + system read-only for the container. @@ -280,7 +283,7 @@ List one or more additional capabilities to grant the - container. Takes a comma separated + container. Takes a comma-separated list of capability names, see capabilities7 for more information. Note that the