>Problem solved.
>/dev/rtc is only used to read the time.
>To write the date and time the ioctl function settimeofday is used. To
>prevent this you have to drop the capability sys_time

Dear sfrazt,

Good job! May you figure out if there are "unwanted" side effects if one may 
drop the  sys_time  capability for a container, i.e. will something else will 
be denied what one will probably need to use?

@Dev: If not, this dropping should be added to the reference manuals and 
example configuration snippets.



Greetings

Guido

------------------------------------------------------------------------------
Why Cloud-Based Security and Archiving Make Sense
Osterman Research conducted this study that outlines how and why cloud
computing security and archiving is rapidly being adopted across the IT 
space for its ease of implementation, lower cost, and increased 
reliability. Learn more. http://www.accelacomm.com/jaw/sfnl/114/51425301/
_______________________________________________
Lxc-users mailing list
Lxc-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/lxc-users

Reply via email to