Skip to content
This repository has been archived by the owner on Jun 27, 2018. It is now read-only.

Use Docker's system call whitelisting features #255

Open
DemiMarie opened this issue Oct 10, 2016 · 0 comments
Open

Use Docker's system call whitelisting features #255

DemiMarie opened this issue Oct 10, 2016 · 0 comments

Comments

@DemiMarie
Copy link

Docker supports system call whitelisting. This is necessary to protect the kernel from local privilege escalation exploits. This was a major feature of playpen.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant