Open julienvey opened 9 years ago
Currently, a build container has access to the Docker socket of the host, and can kill any container if he wants.
We need a way to partition the Docker daemon for each build container.
Solutions we discussed:
Currently, a build container has access to the Docker socket of the host, and can kill any container if he wants.
We need a way to partition the Docker daemon for each build container.
Solutions we discussed: