[Exec]
PrivateUsers=no
-Capability=all
-SystemCallFilter=@default @raw-io @system-service @known
[Files]
# binds host kodi home folder into nspawn
BindReadOnly=/dev/bus/usb
BindReadOnly=/dev/dri
BindReadOnly=/dev/input
+BindReadOnly=/dev/uinput
+# libinput reads this to know about devices
+BindReadOnly=/run/udev
BindReadOnly=/dev/lirc0
BindReadOnly=/dev/vga_arbiter
BindReadOnly=/lib/modules