Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

A hardened image is just removing everything that’s not your code, or required for your code to run

From scratch is ideal, distroless is great too

Then use firewalls around your containers as needed





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: