Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

That's not really an issue, as there's a lot of infrastructure around optionally giving device file access to containers. That's why SECCOMP_IOCTL_NOTIF_ADDFD exists.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: