RE: https://mastodon.social/@daandemeyer/116144059697098766

1️⃣9️⃣ Here's the 19th post highlighting key new features of the recently published v260 release of systemd. #systemd260 #systemd

For this one, I am just gonna quote @daandemeyer about the delegation of multiuple UID ranges.

This feature is lovely, because it unblocks nested containers: you can put unpriv nspawn in unpriv nspawn and it will work reasonably, with privilege separation and everything.