--- - name: Add cgroup rule ansible.builtin.blockinfile: path: /etc/pve/nodes/mipha/lxc/613.conf state: present block: | lxc.cgroup2.devices.allow: c 10:200 rwm lxc.mount.entry: /dev/net dev/net none bind,create=dir - name: Change /dev/net/tun ownership ansible.builtin.file: path: /dev/net/tun owner: 100000 group: 100000