Skip to content

Restrict adapter containers to the module's docker compose project #198

@VVander

Description

@VVander

In HD 2.0, modules have full access to the docker socket, which is a security vulnerability. We should restrict this access to only a module's own project so that it can't interfere with HD's normal coordination of other containers and users have more confidence in the isolation of each individual module's functionality.

https://labex.io/tutorials/cybersecurity-how-to-solve-docker-access-restrictions-420815

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels
    No fields configured for Feature.

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions