Hacker News new | ask | show | jobs
by rao-v 84 days ago
I'll give it a shot later today, but basically you need a pretty specific seccomp profile (see my example - I pulled from the podman repo) to allow bubblewrap to run inside an unpriviledged docker.