|
|
|
|
|
by coldtea
870 days ago
|
|
>Auditing a docker container is way more difficult/complex. As long as it doesn't have access to outside of the container, who cares? You check the dockerfile, see what access it allows, and build the container. Besides a shell script can be 100s of lines, not very fun auditing it. |
|
That was more snark than HN likes, but it feels like forgetting promises of the past in a dangerous way.