Daniel J Walsh
Daniel J Walsh
If community or @flouthoc or @giuseppe would be willing to work with this, I would be thrilled. I just pulled a Microsoft image and it stored it fine, someone needs...
This is not something the upstream deals with. This is a distributions issue.
@flouthoc PTAL
I actually think this should be made optional, in that it is only needed for security purposes to fix a potential vulnerability in the host OS. If you are running...
I agree, although I still believe we should figure a way to be smarter in rootless mode. --nofork option would fix the problem. Allow distributions to change the default in...
@giuseppe @flouthoc WDYT?
Please reply if you are interested in maintaining this project.
Its funny I was working on a policy to allow all of the mounts yesterday for running buildah in a container, but we decided to pull the errort and run...
With this policy https://github.com/projectatomic/container-selinux/pull/53 You would need to do podman run -ti --security-opt label=type:container_userns_t ...
@jwhonce @mwhahaha @cdoern PTAL