It does setrlimit() but that is a separate older mechanism. I don't think it does cgroups. At least the man page doesn't say anything about cgroups.

I didn't realize it did the networking stuff. It does have a lot of options.

Reply to this note

Please Login to reply.

Discussion

Nspawn is pretty wild. There is very little googling it and to learn it just means reading man pages and fiddling around. I see it has some cgroups code in it tho..

https://github.com/systemd/systemd/blob/main/src/nspawn/nspawn-cgroup.c