version: "2.0" services: component: cap_add: - SYS_ADMIN - SYS_RESOURCE environment: - CONFD_BACKEND=ENV tmpfs: - /run - /sys/fs/cgroup privileged: true system: security_opt: - seccomp:unconfined