[lxc-devel] LXCFS update problems

Dietmar Maurer dietmar at proxmox.com
Thu Nov 19 18:19:12 UTC 2015


> > Maybe, but breaking existing containers is even worse. So I would
> > do the following steps for now:
> 
> No, on security update, breaking all containers is far better than
> having any container be able to run stuff as root on your host.

Also, we have many (enterprise) installations, where admins run
containers himself, so the container root user is usually trusted...
IMHO it makes no sense to break containers in that case.



More information about the lxc-devel mailing list