This repository has been archived by the owner on May 12, 2021. It is now read-only.
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
virtcontainers: update sandbox's device cgroup
Update sandbox's device cgroup before hotpluggin a device and after it has been removed from the VM, this way the device cgroup in the host is fully honoured and the hypervisor will have access only to the devices needed for the sandbox, improving the security. Signed-off-by: Julio Montes <[email protected]>
- Loading branch information