diff options
author | Lennart Poettering <lennart@poettering.net> | 2013-05-10 00:14:12 +0200 |
---|---|---|
committer | Lennart Poettering <lennart@poettering.net> | 2013-05-10 00:17:36 +0200 |
commit | 77b6e19458f37cfde127ec6aa9494c0ac45ad890 (patch) | |
tree | 4262aa17aa9942358fce75c291d1b83035aad57d /man/systemd-nspawn.xml | |
parent | f49fd1d57a429d4a05ac86352c017a845f8185b3 (diff) |
audit: since audit is apparently never going to be fixed for containers tell the user what's going on
Let's try to be helpful to the user and give him a hint what he can do
to make nspawn work with normal OS containers.
https://bugzilla.redhat.com/show_bug.cgi?id=893751
Diffstat (limited to 'man/systemd-nspawn.xml')
-rw-r--r-- | man/systemd-nspawn.xml | 15 |
1 files changed, 9 insertions, 6 deletions
diff --git a/man/systemd-nspawn.xml b/man/systemd-nspawn.xml index d9fb899895..1bc61e83a7 100644 --- a/man/systemd-nspawn.xml +++ b/man/systemd-nspawn.xml @@ -142,16 +142,19 @@ might be necessary to add this file to the container tree manually if the OS of the container is too old to contain this file out-of-the-box.</para> + </refsect1> + + <refsect1> + <title>Incompatibility with Auditing</title> <para>Note that the kernel auditing subsystem is currently broken when used together with containers. We hence recommend turning it off entirely - when using <command>systemd-nspawn</command> by - booting with <literal>audit=0</literal> on the kernel - command line, or by turning it off at kernel build - time. If auditing is enabled in the kernel operating - systems booted in an nspawn container might refuse - log-in attempts.</para> + by booting with <literal>audit=0</literal> on the + kernel command line, or by turning it off at kernel + build time. If auditing is enabled in the kernel + operating systems booted in an nspawn container might + refuse log-in attempts.</para> </refsect1> <refsect1> |