Closed dgtlmoon closed 9 months ago
resolved with seccomp
Could some more information be shared on how to limit the container's required privileges? What profile do you use?
In the changedetection-io docker-compose file the SYS_ADMIN
capabilities are still listed. That seems a bit excessive.
CAP_SYS_ADMIN is too powerful