mirror of
https://github.com/linuxkit/linuxkit.git
synced 2025-10-27 11:57:49 +00:00
70 lines
1.8 KiB
YAML
70 lines
1.8 KiB
YAML
kernel:
|
|
image: "linuxkit/kernel:4.9.x"
|
|
cmdline: "console=ttyS0 page_poison=1"
|
|
init:
|
|
- linuxkit/init:b3740303f3d1e5689a84c87b7dfb48fd2a40a192
|
|
- linuxkit/runc:47b1c38d63468c0f3078f8b1b055d07965a1895d
|
|
- linuxkit/containerd:cf2614f5a96c569a0bd4bd54e054a65ba17d167f
|
|
- linuxkit/ca-certificates:3344cdca1bc59fdfa17bd7f0fcbf491b9dbaa288
|
|
onboot:
|
|
- name: sysctl
|
|
image: "linuxkit/sysctl:1f5ec5d5e6f7a7a1b3d2ff9dd9e36fd6fb14756a"
|
|
net: host
|
|
pid: host
|
|
ipc: host
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
readonly: true
|
|
- name: dhcpcd
|
|
image: "linuxkit/dhcpcd:2def74ab3f9233b4c09ebb196ba47c27c08b0ed8"
|
|
binds:
|
|
- /var:/var
|
|
- /tmp/etc:/etc
|
|
capabilities:
|
|
- CAP_NET_ADMIN
|
|
- CAP_NET_BIND_SERVICE
|
|
- CAP_NET_RAW
|
|
net: host
|
|
command: ["/sbin/dhcpcd", "--nobackground", "-f", "/dhcpcd.conf", "-1"]
|
|
- name: metadata
|
|
image: "linuxkit/metadata:a810b68fec9c9282cf096eed50605ddd6b2f3142"
|
|
binds:
|
|
- /dev:/dev
|
|
- /var:/var
|
|
- /tmp/etc/resolv.conf:/etc/resolv.conf
|
|
net: host
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
services:
|
|
- name: rngd
|
|
image: "linuxkit/rngd:61a07ced77a9747708223ca16a4aec621eacf518"
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
oomScoreAdj: -800
|
|
readonly: true
|
|
- name: sshd
|
|
image: "linuxkit/sshd:e108d208adf692c8a0954f602743e0eec445364e"
|
|
capabilities:
|
|
- all
|
|
net: host
|
|
pid: host
|
|
binds:
|
|
- /var/config/ssh/authorized_keys:/root/.ssh/authorized_keys
|
|
- /tmp/etc/resolv.conf:/etc/resolv.conf
|
|
- name: nginx
|
|
image: "nginx:alpine"
|
|
capabilities:
|
|
- CAP_NET_BIND_SERVICE
|
|
- CAP_CHOWN
|
|
- CAP_SETUID
|
|
- CAP_SETGID
|
|
- CAP_DAC_OVERRIDE
|
|
net: host
|
|
trust:
|
|
image:
|
|
- linuxkit/kernel
|
|
- linuxkit/rngd
|
|
outputs:
|
|
- format: kernel+initrd
|
|
- format: gcp-img
|