|
Kernel space: authoritative Hooks for Containerization |
|
|
|
Source: tuxmachines - Posted by Bill Keys
|
The containers developers have what would seem to be a relatively straightforward problem: they would like to control access to devices on a per-container basis. Then containers could safely be granted access to specific devices without compromising the overall security of the system - even if a container has a root-capable process which can create new device files.
Kernel security is a very importance part of the overall security of ones system. This article goes into one part of kernel security containerization.
Read this full article at tuxmachines
Powered by AkoComment! |