I'd also like to point out that, when setting up a linux
container with
_just_ the lxc tools available in ubuntu, all that was needed to be done
was whitelist the appropriate cgroups for the Android devices. The lxc
tools seem to create the appropriate character devices when you
detach/attach the Android device via USB, and the Android `adb` tool
recognized the devices.
So, a tangential question would be, what libvirt domain XML ends up
"converting" into a cgroup whitelist line in the LXC configuration file?
(see
https://wiki.archlinux.org/index.php/Linux_Containers#Host_device_access_...
examples of cgroups configuration in a vanilla LXC config file).
You don't need to specify anything related to cgroups in libvirt. We will
automatically set the device ACL correctly to allow any devices listed
in the XML config.
Regards,
Daniel
--
|: