Hacker News new | ask | show | jobs
by shatteredgate 1636 days ago
Not anymore, unprivileged user namespaces make it so you don't have to do that. That's how podman's "rootless containers" are able to work.