From 04872c58c920ff2be098ea2ceb1d6197102bd6b2 Mon Sep 17 00:00:00 2001 From: Josh Hawkins <32435876+hawkeye217@users.noreply.github.com> Date: Sun, 30 Aug 2026 17:24:23 -0500 Subject: [PATCH] note that memryx writes models to the root filesystem --- docs/docs/configuration/non_root.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/docs/configuration/non_root.md b/docs/docs/configuration/non_root.md index 1bd466f169..e96f825eaa 100644 --- a/docs/docs/configuration/non_root.md +++ b/docs/docs/configuration/non_root.md @@ -320,7 +320,7 @@ This mode can also take `cap_drop: [ALL]`, which the default mode cannot: starti ### Per-variant exceptions - **Rockchip** needs `- /sys/:/sys/:ro` alongside its device nodes, in addition to everything above. -- **MemryX** and **QNAP Container Station** still require `privileged: true` per their own documentation, which can't be combined with this layout. +- **MemryX** and **QNAP Container Station** still require `privileged: true` per their own documentation, which gives back most of what this layout removes. MemryX also downloads its models to `/memryx_models` on the root filesystem, so it can't run read-only regardless. ## Known limitations