Replace root execution with DynamicUser=yes for VM services (vmsilo-<name>) and vm-switch daemons (vm-switch-<netname>). Console relay and proxy services run as the configured desktop user. Privileged ExecStartPre=+ scripts handle ACLs, VFIO chown, and TAP ownership. Socket paths move to per-VM subdirs (/run/vmsilo/<name>/). Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| config.nix | ||
| default.nix | ||
| options.nix | ||