35c12256c7
container.json. Although we don't yet check for enabled everywhere. Docker-DCO-1.1-Signed-off-by: Rohit Jnagal <jnagal@google.com> (github: rjnagal)
111 lines
1.9 KiB
JSON
111 lines
1.9 KiB
JSON
{
|
|
"hostname": "koye",
|
|
"tty": true,
|
|
"environment": [
|
|
"HOME=/",
|
|
"PATH=PATH=$PATH:/bin:/usr/bin:/sbin:/usr/sbin",
|
|
"container=docker",
|
|
"TERM=xterm-256color"
|
|
],
|
|
"namespaces": [
|
|
{
|
|
"key": "NEWIPC",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "NEWNS",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "NEWPID",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "NEWUTS",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "NEWNET",
|
|
"enabled": true
|
|
}
|
|
],
|
|
"capabilities_mask": [
|
|
{
|
|
"key": "SETPCAP",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "SYS_MODULE",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "SYS_RAWIO",
|
|
"enabled": false
|
|
},
|
|
{
|
|
"key": "SYS_PACCT",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "SYS_ADMIN",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "SYS_NICE",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "SYS_RESOURCE",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "SYS_TIME",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "SYS_TTY_CONFIG",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "MKNOD",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "AUDIT_WRITE",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "AUDIT_CONTROL",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "MAC_OVERRIDE",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "MAC_ADMIN",
|
|
"enabled": true
|
|
},
|
|
{
|
|
"key": "NET_ADMIN",
|
|
"enabled": true
|
|
}
|
|
],
|
|
"networks": [{
|
|
"type": "veth",
|
|
"context": {
|
|
"bridge": "docker0",
|
|
"prefix": "dock"
|
|
},
|
|
"address": "172.17.0.100/16",
|
|
"gateway": "172.17.42.1",
|
|
"mtu": 1500
|
|
}
|
|
],
|
|
"cgroups": {
|
|
"name": "docker-koye",
|
|
"parent": "docker",
|
|
"memory": 5248000,
|
|
"cpu_shares": 1024
|
|
}
|
|
}
|