Understanding and Hardening Linux Containers
ID: 61584d1b-4796-5d0d-87b0-0f13db7f693d
STIX ID: report--61584d1b-4796-5d0d-87b0-0f13db7f693d
Feed Name: NCC Research
This whitepaper analyzes Linux container technologies (LXC, Docker, rkt), explains kernel features used for container isolation (namespaces, cgroups, capabilities, MAC, and user namespaces), examines attack surfaces and threats to containers, contrasts container defaults, and provides security hardening recommendations to mitigate deployment weaknesses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
