Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Docker provides some host isolation which can be used effectively as a sandbox. It's not designed for security (and it does have some reasonable defaults) but it does give you options to layer on security modules like apparmor and seccomp very easily.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: