linuxkit/pkg/sysctl/build.yml
Petr Fedchenkov afefea9740
Add CAP_NET_ADMIN capability to sysctl
With linux kernel 5.15+ change of proc/sys/net/ipv4/ip_forward require
CAP_NET_ADMIN (https://github.com/torvalds/linux/commit/8292d7f6). We do
 not use ip_forward now, but we should be ready for future changes of
 conf files.

Signed-off-by: Petr Fedchenkov <giggsoff@gmail.com>
2022-06-28 16:55:32 +03:00

8 lines
109 B
YAML

image: sysctl
config:
pid: "host"
readonly: true
capabilities:
- CAP_SYS_ADMIN
- CAP_NET_ADMIN