Hacker News new | ask | show | jobs
by gavindean90 778 days ago
You are correct from my knowledge. I would expect that if the container is set to not run as root you might be able to enforce fine meaningful security but I’d still run it in a VM if feasible.