On production machines I rarely touch root space with containers.
Docker, Podman, & BSD Jails
1
Posts
1
Posters
4
Views
-
On production machines I rarely touch root space with containers. I tend to keep as much in user as humanly possible in order to keep root mostly safe- even running a lot of systemd services as user.
I've noticed a lot of projects assume root being used (i.e. /srv) and expect root ownership, leading to a total permissions hellscape if you're from an opposite perspective.
My question is what causes a project to decide on root vs user?
-
R relay@relay.an.exchange shared this topic
-
I incentive moved this topic from Uncategorized