From d8d634e45c10a82d7d7c36a767b376098d4535bc Mon Sep 17 00:00:00 2001 From: Peter Cai Date: Mon, 26 Dec 2022 08:34:12 -0500 Subject: [PATCH] app_containers: Disable /dev/shm mount We have disabled the MIT-SHM extension entirely. --- app_containers/.local/bin/run_app_container | 1 - 1 file changed, 1 deletion(-) diff --git a/app_containers/.local/bin/run_app_container b/app_containers/.local/bin/run_app_container index 95b0f0a..85f6755 100755 --- a/app_containers/.local/bin/run_app_container +++ b/app_containers/.local/bin/run_app_container @@ -48,7 +48,6 @@ SUDO_ASKPASS=$HOME/.local/bin/askpass-bemenu sudo -A systemd-nspawn -M $CONTAINE --bind-ro=/run/systemd/resolve/stub-resolv.conf:/etc/resolv.conf \ `# GPU` \ --bind=/dev/dri \ - --bind=/dev/shm \ --property=DeviceAllow='char-drm rw' \ `# Input devices` \ --bind-ro=/dev/input \