Hacker News new | ask | show | jobs
by akerl_ 4066 days ago
This would be really great if security was a binary switch, but it's not. The most secure way for them to write Docker would be if, when started, it ran `shutdown -h now`. In the real world, designers of systems and software are required to make security decisions and determine the best course for providing security and usability.

I don't agree with several decisions that the Docker team has made, but to so grossly oversimplify the matter at hand is unhelpful.