Skip to content

Restrict adapter containers to the module's docker compose project #198

@VVander

Description

@VVander

In HD 2.0, modules have full access to the docker socket, which is a security vulnerability. We should restrict this access to only a module's own project so that it can't interfere with HD's normal coordination of other containers and users have more confidence in the isolation of each individual module's functionality.

https://labex.io/tutorials/cybersecurity-how-to-solve-docker-access-restrictions-420815

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions