canonical / multipass

Multipass orchestrates virtual Ubuntu instances
https://multipass.run
GNU General Public License v3.0
7.51k stars 632 forks source link

[docs] Update explanation for privileged-mounts default on windows #3555

Open ricab opened 3 days ago

ricab commented 3 days ago

Description of documentation issue or suggestion

On Windows, mounts are disabled by default, as anyone with TCP access to localhost (127.0.0.1) can use Multipass, and by extension, gets access to the entire filesystem.

This is now outdated.

Proposal to fix issue or enact suggestion

Explain that any user beyond the installing user needs to authenticate with the daemon before it will service their requests. Add that privileged mounts are still disabled by default on Windows for historical reasons (something we may want to revisit).

Additional context https://multipass.run/docs/authenticating-clients