And remove ‘root-shell’.
So now "systemctl start container@foo" will only return after the container has reached multi-user.target.