Privileged container in pod running in user namespace (KEP-127)
Summary
TD;DR - Is it considered safe to have a privileged container in a pod that is running in its own user namespace? I’m using the hostUsers: false flag on a pod...
Original reporting
Open original sourceAFBytes is a read-only aggregator. Use the original source for full context and complete reporting.