Eelco Dolstra fd5bbdb436 nixos-containers: Set DevicePolicy=closed
This makes the container a bit more secure, by preventing root
creating device nodes to access the host file system, for
instance. (Reference: systemd-nspawn@.service in systemd.)
2016-07-28 17:58:55 +02:00
..
2016-03-30 16:43:36 +01:00
2016-06-11 21:13:37 +02:00
2016-07-12 17:26:29 +02:00
2016-01-15 18:09:58 +00:00