Binding the /nix path in a container makes remounting fail

I’m surprised that you can write to the /nix/var/nix/daemon-socket/socket if it’s mounted as read only. I will have to play around.