Hacker News new | ask | show | jobs
by monocasa 1264 days ago
That's not really an issue, as there's a lot of infrastructure around optionally giving device file access to containers. That's why SECCOMP_IOCTL_NOTIF_ADDFD exists.