linuxkit/projects/selinux/selinux.yml
Justin Cormack 298f4aab32 Consistently don't use quotes around image names
These are not needed, but we are inconsistent. Been waiting for a
quiet moment to fix this since I noticed while doing a presentation...

Signed-off-by: Justin Cormack <justin.cormack@docker.com>
2017-07-09 17:47:30 +01:00

22 lines
550 B
YAML

kernel:
image: mobylinux/kernel-selinux:4.9.x
cmdline: "console=ttyS0 page_poison=1 security=selinux selinux=1"
init:
- "mobylinux/init:b5249a412536b4e69f8e1f668680d2ae185cc505"
onboot:
- name: sysctl
image: mobylinux/sysctl:2cf2f9d5b4d314ba1bfc22b2fe931924af666d8c
net: host
pid: host
ipc: host
capabilities:
- CAP_SYS_ADMIN
readonly: true
services:
- name: rngd
image: mobylinux/rngd:3dad6dd43270fa632ac031e99d1947f20b22eec9
capabilities:
- CAP_SYS_ADMIN
oomScoreAdj: -800
readonly: true