|
Kernel space: authoritative Hooks for Containerization |
|
|
|
Source: tuxmachines - Posted by Bill Keys
|
The containers developers have what would seem to be a relatively straightforward problem: they would like to control access to devices on a per-container basis. Then containers could safely be granted access to specific devices without compromising the overall security of the system - even if a container has a root-capable process which can create new device files.
Kernel security is a very importance part of the overall security of ones system. This article goes into one part of kernel security containerization.
Read this full article at tuxmachines
Only registered users can write comments. Please login or register. Powered by AkoComment! |