userns.conf.in revision 6e39e4cbff5d49b4a66451696aa87b9884f58a6e
# CAP_SYS_ADMIN in init-user-ns is required for cgroup.devices
# We can't move bind-mounts, so don't use /dev/lxc/
# Extra bind-mounts for userns
# Default seccomp policy is not needed for unprivileged containers, and
# non-root users cannot use seccmp without NNP anyway.