Dan Walsh
Daniel Walsh is a Senior Distinguished Engineer at Red Hat. Joined Red Hat in August 2001. Red Hat Container Runtime Engineering team Architect. Focuses on CRI-O, Buildah, Podman, containers/storage and containers/image. Previos leader of the SELinux project.
Session
09-21
14:05
25min
Generating seccomp profiles for containers using podman and eBPF
Dan Walsh
Currently everyone uses the same seccomp rules for running their containers. This tool allows us to generate seccomp rules based on what the container actually requires and allows us to lock down the container.
Cage