summaryrefslogtreecommitdiff
path: root/docs/source/markdown/podman-create.1.md
diff options
context:
space:
mode:
authorOpenShift Merge Robot <openshift-merge-robot@users.noreply.github.com>2022-06-08 11:03:36 -0400
committerGitHub <noreply@github.com>2022-06-08 11:03:36 -0400
commit864d46c77ef76241b6f0e0c725a08ec28e7e32bc (patch)
tree8d2cb5e28f7edf3200ddeb17e6aaab4aee5cd794 /docs/source/markdown/podman-create.1.md
parentb4c981893de2e2c5b0b6163961d6699098f5c1ae (diff)
parentf0516a01414c28df28d41faa4d3eca5a93a73c10 (diff)
downloadpodman-864d46c77ef76241b6f0e0c725a08ec28e7e32bc.tar.gz
podman-864d46c77ef76241b6f0e0c725a08ec28e7e32bc.tar.bz2
podman-864d46c77ef76241b6f0e0c725a08ec28e7e32bc.zip
Merge pull request #14532 from rhatdan/man
--userns=keep-id,nomap are not allowed in rootful mode
Diffstat (limited to 'docs/source/markdown/podman-create.1.md')
-rw-r--r--docs/source/markdown/podman-create.1.md4
1 files changed, 2 insertions, 2 deletions
diff --git a/docs/source/markdown/podman-create.1.md b/docs/source/markdown/podman-create.1.md
index 913183869..d5e96168d 100644
--- a/docs/source/markdown/podman-create.1.md
+++ b/docs/source/markdown/podman-create.1.md
@@ -1261,9 +1261,9 @@ Podman allocates unique ranges of UIDs and GIDs from the `containers` subordinat
**host**: run in the user namespace of the caller. The processes running in the container will have the same privileges on the host as any other process launched by the calling user (default).
-**keep-id**: creates a user namespace where the current rootless user's UID:GID are mapped to the same values in the container. This option is ignored for containers created by the root user.
+**keep-id**: creates a user namespace where the current rootless user's UID:GID are mapped to the same values in the container. This option is not allowed for containers created by the root user.
-**nomap**: creates a user namespace where the current rootless user's UID:GID are not mapped into the container. This option is ignored for containers created by the root user.
+**nomap**: creates a user namespace where the current rootless user's UID:GID are not mapped into the container. This option is not allowed for containers created by the root user.
**ns:**_namespace_: run the container in the given existing user namespace.