MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
containers
Recherche

[$] System call interception for unprivileged containers

jeudi 30 juin 2022, 00:42 , par LWN.net
On the first day of the 2022 Linux
Security Summit North America (LSSNA) in Austin, Texas, Stéphane Graber
and Christian Brauner gave a presentation on using system-call interception
for container security purposes. The idea is to allow unprivileged
containers, those without elevated privileges on the host, to still
accomplish their tasks, some of which require privileges. A fair amount of
work has been done to make this
viable, but there is still more to do.
https://lwn.net/Articles/899281/
News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Date Actuelle
sam. 27 avril - 12:35 CEST