Skip to content

Carthage Libvirt Container #138

@hartmans

Description

@hartmans

Add support for a privileged rootless container that is sufficient to run libvirt and carthage.

we discovered several things that we need to do to make a container suitable for WHS-mitigation. Put together a suitable libvirtd base container that

has setgroups LD_PRELOAD

properly configures qemu.conf (user=root, group=root, remember_owner = 0

dynamic_ownership = 0

Documents what volumes are needed

Documents how to gain access to /dev/kvm --group-add=keep

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions