I noticed that https://lxd.readthedocs.io/en/latest/production-setup/#production-setup still references Ubuntu 18.04, so was wondering if it might need a review? I haven’t studied it in depth, but e.g. the setting [edit, sorry was accidentally looking at a Debian 10 box when I wrote that bit!].kernel.dmesg_restrict = 0
is now the default on Ubuntu 20.04.
Based on the contents of that page, I’ve created files /etc/security/limits.d/lxd.conf
and /etc/sysctl.d/99-lxd-production.conf
… but was wondering if it would be better if these were included with lxd itself?
Also the instruction “Then, reboot the server.” after the systctl config items, might be better replaced with "Then run sysctl --system
"?