initial commit
This commit is contained in:
commit
ebc1be5217
143 changed files with 7721 additions and 0 deletions
16
modules/features/security/sysctl/security-sysctl-userns.nix
Normal file
16
modules/features/security/sysctl/security-sysctl-userns.nix
Normal file
|
|
@ -0,0 +1,16 @@
|
|||
# Can break containers and flatpaks
|
||||
{ ... }:
|
||||
{
|
||||
config.dendritic.features.security-sysctl-userns = {
|
||||
nixosModules = [
|
||||
(
|
||||
{ lib, ... }:
|
||||
{
|
||||
boot.kernel.sysctl = lib.mkForce {
|
||||
"kernel.unprivileged_userns_clone" = 0;
|
||||
};
|
||||
}
|
||||
)
|
||||
];
|
||||
};
|
||||
}
|
||||
Loading…
Add table
Add a link
Reference in a new issue