Hacker News new | past | comments | ask | show | jobs | submit login

This is also nice for breaking in/out of Docker containers with bind mounts.



Not if you use user namespaces (which you really should).


Which is not the default that Docker uses :(

One more reason to switch to podman, which has sane defaults.


Or LXD/LXC which can run containers such that they are isolated from one another in terms of their id mappings.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: