3 ms·
How about in the OS? This sounds like exactly the type of thin SELinux is meant to handle
by manbart 4y ago
How about in the OS? This sounds like exactly the type of thin SELinux is meant to handle
- insanitybit 4y agoYeah, I think the thing is... path traversal is pretty trivial to solve. If you have a single tenancy app and you just don't want the service accessing shit it shouldn't just throw it in docker. If you have a multi-tenancy app just put every user behind a uuid.