k8s-user-namespaces-demo. The goal of supporting user namespaces in Kubernetes is to run processes in pods with different user and group IDs than in the host. Specifically, a privileged process in the pod runs as an unprivileged process in the host. If such a process breaks out of the container to the host, it will have limited impact.

github.com/seifrajhi/k8s-user-namespaces-demo

Vaya's read on this project

Problem, audience, market, and the verdict — sign in to see it.

Updates

No recent activity.