Privileged container in pod running in user namespace (KEP-127)

Privileged container in pod running in user namespace (KEP-127)

Summary

TD;DR - Is it considered safe to have a privileged container in a pod that is running in its own user namespace? I’m using the hostUsers: false flag on a pod...

Original reporting

Open original source

AFBytes is a read-only aggregator. Use the original source for full context and complete reporting.

Related coverage