d2iq-archive / kubernetes-mesos

A Kubernetes Framework for Apache Mesos
636 stars 92 forks source link

admission plugin: DenyEscalatingExec #781

Open jdef opened 8 years ago

jdef commented 8 years ago

we should support this by default in our dcos packaging:disallows pod/exec or pod/attach to pods w/ privileged containers or pods that share the host IPC or pid namespace