X-Git-Url: https://www.chiark.greenend.org.uk/ucgi/~ianmdlvl/git?a=blobdiff_plain;f=man%2Fsystemd-nspawn.xml;h=d6687038af68467bc3adb42d210a71e889ca12bf;hb=06c17c39a8345deef1ecff4dd5ef262f968c9be2;hp=61b03fa7fb1860649fb5990d8c75aacd7dbb16f7;hpb=1b9e5b126359a2a2ec37de1f94f046093abc74b8;p=elogind.git diff --git a/man/systemd-nspawn.xml b/man/systemd-nspawn.xml index 61b03fa7f..d6687038a 100644 --- a/man/systemd-nspawn.xml +++ b/man/systemd-nspawn.xml @@ -219,13 +219,15 @@ - Run the command - under specified user, create home - directory and cd into it. As rest - of systemd-nspawn, this is not - the security feature and limits - against accidental changes only. - + After transitioning + into the container, change to the + specified user-defined in the + container's user database. Like all + other systemd-nspawn features, this is + not a security feature and provides + protection against accidental + destructive operations + only. @@ -338,7 +340,7 @@ container's name (as specified with ), prefixed with ve-. The - container side of the the Ethernet + container side of the Ethernet link will be named host0. Note that @@ -356,7 +358,7 @@ implies . If - this option is used the host side of + this option is used, the host side of the Ethernet link will use the vb- prefix instead of ve-. @@ -501,6 +503,30 @@ mounts. + + + + Mount a tmpfs file + system into the container. Takes a + single absolute path argument that + specifies where to mount the tmpfs + instance to (in which case the + directory access mode will be chosen + as 0755, owned by root/root), or + optionally a colon-separated pair of + path and mount option string, that is + used for mounting (in which case the + kernel default for access mode and + owner will be chosen, unless otherwise + specified). This option is + particularly useful for mounting + directories such as + /var as tmpfs, to + allow state-less systems, in + particular when combined with + . + + @@ -598,8 +624,8 @@ x86 and x86-64 are supported. This is useful when running - a 32bit container on a 64bit - host. If this setting is not used + a 32-bit container on a 64-bit + host. If this setting is not used, the personality reported in the container is the same as the one reported on the