logo

How to run rootless containers

ID: 6a91c91b-f540-554b-9714-a85e705ba2cc

STIX ID: report--6a91c91b-f540-554b-9714-a85e705ba2cc

Feed Name: Sysdig Blog

Date Published: 2026-02-10

Date Updated: 2026-05-01

...
...

**Executive Summary:** This guide explains the security risks of running containers as root and provides practical, actionable steps to run containers unprivileged: adapt images (e.g., change privileged ports, adjust file ownership and writable paths to /tmp, set PID locations), use Linux capabilities when needed, enable user namespaces to map container root to an unprivileged host user, and apply additional hardening such as read-only filesystems and multi-stage builds.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.