summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorDaniil Baturin <daniil@vyos.io>2025-02-27 16:22:57 +0000
committerGitHub <noreply@github.com>2025-02-27 16:22:57 +0000
commitf327d0286e43f35e777f94ce3de1a631f26d1ac2 (patch)
tree68c2032b27d273e652d0f247c9bbb80d3119abaa
parent22af5b3e8a7c711df753192b8c55b1faa468b20d (diff)
parent2e6d31388697ded45bcf263a98a18a625457d94a (diff)
downloadvyos-1x-f327d0286e43f35e777f94ce3de1a631f26d1ac2.tar.gz
vyos-1x-f327d0286e43f35e777f94ce3de1a631f26d1ac2.zip
Merge pull request #4374 from sever-sever/T7204
T7204: Container add capability MKNOD
-rw-r--r--interface-definitions/container.xml.in8
1 files changed, 6 insertions, 2 deletions
diff --git a/interface-definitions/container.xml.in b/interface-definitions/container.xml.in
index 65ac99e12..5c320e8c6 100644
--- a/interface-definitions/container.xml.in
+++ b/interface-definitions/container.xml.in
@@ -31,7 +31,7 @@
<properties>
<help>Grant individual Linux capability to container instance</help>
<completionHelp>
- <list>net-admin net-bind-service net-raw setpcap sys-admin sys-module sys-nice sys-time</list>
+ <list>net-admin net-bind-service net-raw mknod setpcap sys-admin sys-module sys-nice sys-time</list>
</completionHelp>
<valueHelp>
<format>net-admin</format>
@@ -46,6 +46,10 @@
<description>Permission to create raw network sockets</description>
</valueHelp>
<valueHelp>
+ <format>mknod</format>
+ <description>Permission to create special files</description>
+ </valueHelp>
+ <valueHelp>
<format>setpcap</format>
<description>Capability sets (from bounded or inherited set)</description>
</valueHelp>
@@ -66,7 +70,7 @@
<description>Permission to set system clock</description>
</valueHelp>
<constraint>
- <regex>(net-admin|net-bind-service|net-raw|setpcap|sys-admin|sys-module|sys-nice|sys-time)</regex>
+ <regex>(net-admin|net-bind-service|net-raw|mknod|setpcap|sys-admin|sys-module|sys-nice|sys-time)</regex>
</constraint>
<multi/>
</properties>