mirror of
https://github.com/linuxkit/linuxkit.git
synced 2025-11-12 02:35:41 +00:00
99 lines
2.7 KiB
YAML
99 lines
2.7 KiB
YAML
kernel:
|
|
image: "linuxkit/kernel:4.9.x"
|
|
cmdline: "console=ttyS0 console=tty0 page_poison=1"
|
|
init:
|
|
- linuxkit/init:b3740303f3d1e5689a84c87b7dfb48fd2a40a192
|
|
- linuxkit/runc:2649198589ef0020d99f613adaeda45ce0093a38
|
|
- linuxkit/containerd:cf2614f5a96c569a0bd4bd54e054a65ba17d167f
|
|
- linuxkit/ca-certificates:3344cdca1bc59fdfa17bd7f0fcbf491b9dbaa288
|
|
onboot:
|
|
- name: sysctl
|
|
image: "linuxkit/sysctl:2cf2f9d5b4d314ba1bfc22b2fe931924af666d8c"
|
|
net: host
|
|
pid: host
|
|
ipc: host
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
readonly: true
|
|
- name: dhcpcd
|
|
image: "linuxkit/dhcpcd:2def74ab3f9233b4c09ebb196ba47c27c08b0ed8"
|
|
binds:
|
|
- /var:/var
|
|
- /tmp/etc:/etc
|
|
capabilities:
|
|
- CAP_NET_ADMIN
|
|
- CAP_NET_BIND_SERVICE
|
|
- CAP_NET_RAW
|
|
net: host
|
|
command: ["/sbin/dhcpcd", "--nobackground", "-f", "/dhcpcd.conf", "-1"]
|
|
- name: format
|
|
image: "linuxkit/format:d78093e943f9c88386e30c00353f9476d34fb551"
|
|
binds:
|
|
- /dev:/dev
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
- CAP_MKNOD
|
|
- name: mount
|
|
image: "linuxkit/mount:fc7164d7c4e1fe5d1da395c7f949fb332cffe752"
|
|
binds:
|
|
- /dev:/dev
|
|
- /var:/var:rshared,rbind
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
rootfsPropagation: shared
|
|
command: ["/mount.sh", "/var/lib/swarmd"]
|
|
- name: metadata
|
|
image: "linuxkit/metadata:a810b68fec9c9282cf096eed50605ddd6b2f3142"
|
|
binds:
|
|
- /dev:/dev
|
|
- /var:/var
|
|
- /tmp/etc/resolv.conf:/etc/resolv.conf
|
|
net: host
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
services:
|
|
- name: rngd
|
|
image: "linuxkit/rngd:61a07ced77a9747708223ca16a4aec621eacf518"
|
|
capabilities:
|
|
- CAP_SYS_ADMIN
|
|
oomScoreAdj: -800
|
|
readonly: true
|
|
- name: ntpd
|
|
image: "linuxkit/openntpd:a38eabb308d0405f58894979f8b8031a6c7e1134"
|
|
capabilities:
|
|
- CAP_SYS_TIME
|
|
- CAP_SYS_NICE
|
|
- CAP_SYS_CHROOT
|
|
- CAP_SETUID
|
|
- CAP_SETGID
|
|
net: host
|
|
- name: swarmd
|
|
image: "linuxkit/swarmd:a2f57f14f07fb6d7cded7832b2dabe878b28554e"
|
|
command: ["/usr/bin/swarmd", "--containerd-addr=/run/containerd/containerd.sock", "--log-level=debug", "--state-dir=/var/lib/swarmd"]
|
|
capabilities:
|
|
- CAP_CHOWN
|
|
- CAP_DAC_OVERRIDE
|
|
- CAP_FSETID
|
|
- CAP_FOWNER
|
|
- CAP_MKNOD
|
|
- CAP_NET_RAW
|
|
- CAP_SETGID
|
|
- CAP_SETUID
|
|
- CAP_SETFCAP
|
|
- CAP_SETPCAP
|
|
- CAP_NET_BIND_SERVICE
|
|
- CAP_SYS_CHROOT
|
|
- CAP_KILL
|
|
- CAP_AUDIT_WRITE
|
|
pid: host
|
|
net: host
|
|
binds:
|
|
- /run/containerd/containerd.sock:/run/containerd/containerd.sock
|
|
- /var/lib/containerd:/var/lib/containerd
|
|
- /var/lib/swarmd:/var/lib/swarmd
|
|
- /etc/resolv.conf:/etc/resolv.conf
|
|
outputs:
|
|
- format: kernel+initrd
|
|
- format: iso-bios
|
|
- format: iso-efi
|