buildkit/executor
Akihiro Suda c54f4a986d support --oci-worker-no-process-sandbox
Note that this mode allows build executor containers to kill (and potentially ptrace) an arbitrary process in the BuildKit host namespace.
This mode should be enabled only when the BuildKit is running in a container as an unprivileged user.

Signed-off-by: Akihiro Suda <suda.akihiro@lab.ntt.co.jp>
2019-01-08 10:42:52 +09:00
..
containerdexecutor support --oci-worker-no-process-sandbox 2019-01-08 10:42:52 +09:00
oci support --oci-worker-no-process-sandbox 2019-01-08 10:42:52 +09:00
runcexecutor support --oci-worker-no-process-sandbox 2019-01-08 10:42:52 +09:00
executor.go solver: net host with basic entitlements support 2018-08-09 14:03:35 -07:00