YoVDO

Securing Filesystem Images for Unprivileged Containers

Offered By: Linux Foundation via YouTube

Tags

Container Security Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the intricacies of securing filesystem images for unprivileged containers in this informative 42-minute conference talk by James Bottomley, a Distinguished Engineer at IBM. Delve into the essential role of User Namespaces in container security, allowing for seemingly privileged execution within containers while maintaining unprivileged status from the host's perspective. Examine the challenges associated with filesystem writes in user namespaces and the impact on sharing images and archives among containers. Compare three proposed mechanisms for addressing these issues: shiftfs, userns portable roots, and filesystem mappings, weighing their advantages and disadvantages. Gain insights from Bottomley's extensive experience as a Linux Kernel maintainer and former Linux Foundation board member as he discusses cutting-edge solutions for enhancing container security and filesystem management.

Syllabus

Securing Filesystem Images for Unprivileged Containers by James Bottomley, IBM


Taught by

Linux Foundation

Tags

Related Courses

Maintaining Deployment Security in Microsoft Azure
Pluralsight
Microsoft Azure Security Engineer: Configure Advanced Security for Compute
Pluralsight
Microsoft Azure Security Technologies (AZ-500) Cert Prep: 2 Implement Platform Protection
LinkedIn Learning
Securing Containers and Kubernetes Ecosystem
LinkedIn Learning
Performing DevSecOps Automated Security Testing
Pluralsight