4 ms·
Hello, I had a question about how Cloud Run handles security between containers being run on the cloud. I assume my container runs alongside other containers o
by rcconf 8y ago
Hello, I had a question about how Cloud Run handles security between containers being run on the cloud.
I assume my container runs alongside other containers on the same host, how do you prevent privilege escalation exploits?
- mikehelmick 8y agoCloud Run engineer here. Containers are run in gVisor https://github.com/google/gvisor https://github.com/google/gvisor as the container sandbox.
- wlhee 8y agoCloud Run prevents privilege escalation by using gVisor as sandbox technology. Each container has its own isolated user-space kernel from the host. (Disclaimer: I am Cloud Run dev)
- deleted 8y ago[deleted]