doc: sandbox-paths computes closures

This commit is contained in:
Naïm Favier 2022-12-28 17:09:20 +01:00
parent 3dbf9b5af5
commit d5d2f50ebb
No known key found for this signature in database
GPG key ID: 95AFCE8211908325

View file

@ -491,6 +491,9 @@ public:
for example, `/dev/nvidiactl?` specifies that `/dev/nvidiactl` will
only be mounted in the sandbox if it exists in the host filesystem.
If the source is in the Nix store, then its closure will be added to
the sandbox as well.
Depending on how Nix was built, the default value for this option
may be empty or provide `/bin/sh` as a bind-mount of `bash`.
)",