[-] revv@lemmy.blahaj.zone 1 points 11 months ago

Good to know. Thanks.

[-] revv@lemmy.blahaj.zone 1 points 1 year ago

Nope. It just maps a single user and group from the container to a regular user on the host. With the above config, root in the container has the "real" UID of 100000. It can't make changes to anything any other unprivileged user can. A privileged container otoh runs root as root. It can do a lot of damage. By running privileged containers you're kind of throwing out a good portion of LXC's benefits.

view more: ‹ prev next ›

revv

joined 1 year ago