- Those of you using it in production, how are you handling security?
- How secure has Docker proven to be in general?
- Those of you using it in production, how are you handling security?
- How secure has Docker proven to be in general?
You can argue that the docker daemon itself (which is a big monolithic process running as root) is a security issue (RedHat certainly do). You can also argue that it makes security processes harder, as you dont have workflows in place to audit containers, make sure they are updated etc, but thats a different issue.
User namespaces are going to be really complicated to work with not really convinced they are the panacea people expect. Not running as root is much easier!
[0] https://github.com/docker/docker-registry/blob/0.9.1/Dockerf...
This distinction is important because it's why, in practice, Docker's current approach has proven to be more secure than user namespaces. User namespaces allow various operations that would be outright denied under a Docker container's very-real-but-very-limited root user.
However, yes, user namespaces are coming to Docker. It's a highly desired feature and eventually userns will mature.
Very little compared to hardware-assisted virtualization like KVM. Unfortunately LXC containers are not designed with security in mind and, together with the rest of the kernel, provide a big attack surface.
Might just be limited to my use case for Docker, but so far it's security agnostic.
It's an interesting phrase: 'to officially be used in production'. Who is the official that officially signs docker to be ready? ;-)
So far I've perceived Docker to be like virtualenv for python - useful but orthogonal to any security practices.