Hacker News new | ask | show | jobs
by timost 905 days ago
Using rootless podman limits the blast radius of a container escape.

Also many of the cappabilities described in this article aren't compatible with a rootless user deployment scénario.