kas-container: Simplify docker arguments
--privileged implies all caps, so no need to list some explicitly. Signed-off-by: Jan Kiszka <jan.kiszka@siemens.com>
This commit is contained in:
parent
6f8d5d6c78
commit
6c5e77800c
@ -68,17 +68,11 @@ enable_isar_mode() {
|
||||
KAS_CONTAINER_IMAGE_NAME_DEFAULT="kas-isar"
|
||||
KAS_ISAR_ARGS="--privileged"
|
||||
|
||||
case "${KAS_CONTAINER_ENGINE}" in
|
||||
docker)
|
||||
KAS_ISAR_ARGS="${KAS_ISAR_ARGS} --cap-add=SYS_ADMIN"
|
||||
KAS_ISAR_ARGS="${KAS_ISAR_ARGS} --cap-add=MKNOD"
|
||||
;;
|
||||
podman)
|
||||
if [ "${KAS_CONTAINER_ENGINE}" = "podman" ]; then
|
||||
# sudo is needed for a privileged podman container
|
||||
KAS_CONTAINER_COMMAND="sudo ${KAS_CONTAINER_COMMAND}"
|
||||
KAS_ISAR_ARGS="${KAS_ISAR_ARGS} --pid=host"
|
||||
;;
|
||||
esac
|
||||
fi
|
||||
}
|
||||
|
||||
KAS_IMAGE_VERSION_DEFAULT="2.3.3"
|
||||
|
Loading…
Reference in New Issue
Block a user