File tree Expand file tree Collapse file tree 1 file changed +3
-3
lines changed
content/manuals/security/for-admins/hardened-desktop/enhanced-container-isolation Expand file tree Collapse file tree 1 file changed +3
-3
lines changed Original file line number Diff line number Diff line change @@ -235,10 +235,10 @@ Desktop Linux VM (e.g., 100000->165535).
235235
236236Moreover, each container gets an exclusive range of real user-IDs in the Linux
237237VM (e.g., container 0 could get mapped to 100000->165535, container 2 to
238- 165536->231071, container 3 to 231072->296607, and so on). Same applies to
238+ 165536->231071, container 3 to 231072->296607, and so on). The same applies to
239239group-IDs. In addition, if a container is stopped and restarted, there is no
240- guarantee it will receive the same mapping as before. This by design and further
241- improves security.
240+ guarantee it will receive the same mapping as before. This is by design and
241+ further improves security.
242242
243243However the above presents a problem when mounting Docker volumes into
244244containers, as the files written to such volumes will have the real
You can’t perform that action at this time.
0 commit comments