What does security.nesting=true?

Nope, other than it’s standing description that it allows for nested containers like running LXC, LXD or Docker inside a LXD container.