kernel: image: "linuxkit/kernel:4.9.x" cmdline: "console=ttyS1 page_poison=1" init: - linuxkit/init:e10e2efc1b78ef41d196175cbc07e069391f406e - linuxkit/runc:b0fb122e10dbb7e4e45115177a61a3f8d68c19a9 - linuxkit/containerd:18eaf72f3f4f9a9f29ca1951f66df701f873060b - linuxkit/ca-certificates:5fc6ba7f91534ddbfef975404c33e44581e6ed7a onboot: - name: sysctl image: "linuxkit/sysctl:1f5ec5d5e6f7a7a1b3d2ff9dd9e36fd6fb14756a" net: host pid: host ipc: host capabilities: - CAP_SYS_ADMIN services: - name: rngd image: "linuxkit/rngd:c42fd499690b2cb6e4e6cb99e41dfafca1cf5b14" capabilities: - CAP_SYS_ADMIN oomScoreAdj: -800 - name: dhcpcd image: "linuxkit/dhcpcd:48e249ebef6a521eed886b3bce032db69fbb4afa" binds: - /var:/var - /tmp:/etc capabilities: - CAP_NET_ADMIN - CAP_NET_BIND_SERVICE - CAP_NET_RAW net: host oomScoreAdj: -800 - name: sshd image: "linuxkit/sshd:e108d208adf692c8a0954f602743e0eec445364e" capabilities: - all net: host pid: host binds: - /root/.ssh:/root/.ssh - /etc/resolv.conf:/etc/resolv.conf trust: image: - linuxkit/kernel - linuxkit/rngd files: - path: root/.ssh/authorized_keys contents: '#your ssh key here' outputs: - format: kernel+initrd