nix-config/modules/features/security/sysctl/security-sysctl-userns.nix
2026-04-15 18:26:05 -04:00

16 lines
305 B
Nix

# Can break containers and flatpaks
{ ... }:
{
config.dendritic.features.security-sysctl-userns = {
nixosModules = [
(
{ lib, ... }:
{
boot.kernel.sysctl = lib.mkForce {
"kernel.unprivileged_userns_clone" = 0;
};
}
)
];
};
}