summaryrefslogtreecommitdiff
path: root/pkg/specgen/generate/security.go
Commit message (Expand)AuthorAge
* Containers should not get inheritable caps by defaultDaniel J Walsh2021-01-07
* Merge pull request #8685 from mheon/ignore_containersconf_sysctls_shared_netOpenShift Merge Robot2021-01-05
|\
| * Ignore containers.conf sysctls when sharing namespacesMatthew Heon2020-12-10
* | fix: disable seccomp by default when privileged.Max Goltzsche2021-01-02
* | SpellingJosh Soref2020-12-22
* | Properly handle --cap-add all when running with a --user flagDaniel J Walsh2020-12-09
|/
* specgen: keep capabilities with --userns=keep-idGiuseppe Scrivano2020-11-02
* specgen: fix check for root userGiuseppe Scrivano2020-11-02
* specgen: add support for ambient capabilitiesGiuseppe Scrivano2020-11-02
* capabilities: always set ambient and inheritableGiuseppe Scrivano2020-09-30
* Ignore containers.conf sysctl when namespaces set to hostDaniel J Walsh2020-09-28
* Fix unconfined AppArmor profile usage for unsupported systemsSascha Grunert2020-09-07
* In podman 1.* regression on --cap-addDaniel J Walsh2020-08-21
* Allow specifying seccomp profiles for privileged containersSascha Grunert2020-08-11
* Switch all references to github.com/containers/libpod -> podmanDaniel J Walsh2020-07-28
* Support default profile for apparmorDaniel J Walsh2020-07-22
* move go module to v2Valentin Rothberg2020-07-06
* Handle dropping capabilties correctly when running as non root userDaniel J Walsh2020-06-17
* Properly handle default capabilities listed in containers.confDaniel J Walsh2020-05-01
* Handle Linux Capabilities correctlyDaniel J Walsh2020-04-20
* podman v2 remove bloat v2Brent Baude2020-04-16