Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Minimising your attack surface by building highly specialised docker images (medium.com/asos-techblog)
6 points by finsterrific on Dec 3, 2018 | hide | past | favorite | 1 comment


There are tools available to strip docker images down to a specified file list. By listing only the absolute minimum of files your application needs you can cut the surface down even further. Do you really need bash on the container for example?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: