#!/bin/bash # The SYS_NICE capability allows you to use numactl to pin processes to # NUMA nodes and/or individual cores docker run -d --cap-add SYS_NICE --rm --device /dev/sgx_enclave \ --device /dev/sgx_provision --name ${TEEMS_DOCKER_PREFIX}teems \ --ulimit nofile=10485760:10485760 \ -h ${TEEMS_DOCKER_PREFIX}teems -t ${TEEMS_DOCKER_PREFIX}teems bash