Lemmy.ca
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
cm0002@lemmy.world to Programmer Humor@programming.dev · 2 months ago

How Docker was born

lemmy.ml

message-square
40
link
fedilink
  • cross-posted to:
  • [email protected]
794

How Docker was born

lemmy.ml

cm0002@lemmy.world to Programmer Humor@programming.dev · 2 months ago
message-square
40
link
fedilink
  • cross-posted to:
  • [email protected]
  • kitnaht@lemmy.worldBanned
    link
    fedilink
    arrow-up
    20
    arrow-down
    1
    ·
    2 months ago

    The biggest problem that I have with docker is honestly, the fear of a supply-chain attack.

    • GreenKnight23@lemmy.world
      link
      fedilink
      arrow-up
      22
      ·
      edit-2
      2 months ago

      deleted by creator

    • MrPistachios@lemmy.today
      link
      fedilink
      English
      arrow-up
      5
      ·
      2 months ago

      but wouldnt that be an issue regardless of docker

    • corsicanguppy
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 months ago

      Enterprise security folks will back you up on that concern.

      • roofuskit@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 months ago

        Enterprise folks also shouldn’t be pulling updates down to production environments.

    • Drasla@lemmy.studio
      link
      fedilink
      arrow-up
      1
      arrow-down
      1
      ·
      2 months ago

      You mean compromised code sneaking into Docker images? Or a DOS on dockerhub?

      • kitnaht@lemmy.worldBanned
        link
        fedilink
        arrow-up
        7
        arrow-down
        3
        ·
        2 months ago

        Supply chain attack has a definition. And it has nothing to do with DDoS.

        • GreenKnight23@lemmy.world
          link
          fedilink
          arrow-up
          4
          ·
          edit-2
          2 months ago

          deleted by creator

      • roofuskit@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 months ago

        They worry about someone replacing the docker image on the hosting server with a malicious modified version for people to pull down during updates.

        • zalgotext@sh.itjust.works
          link
          fedilink
          arrow-up
          9
          ·
          2 months ago

          This worry exists for literally every 3rd party dependency, not just docker, and is addressed the same way - by running tests and vulnerability scans in a sandboxed test environment before shipping to prod

          • roofuskit@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            2 months ago

            I was just answering a question. I had the same response above.

            • zalgotext@sh.itjust.works
              link
              fedilink
              arrow-up
              2
              ·
              2 months ago

              And I was just adding extra details

Programmer Humor@programming.dev

programmer_humor@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

  • Keep content in english
  • No advertisements
  • Posts must be related to programming or programmer topics
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 2.04K users / day
  • 4.5K users / week
  • 9.2K users / month
  • 17.6K users / 6 months
  • 544 local subscribers
  • 23.1K subscribers
  • 1.38K Posts
  • 51K Comments
  • Modlog
  • mods:
  • Feyter@programming.dev
  • adr1an@programming.dev
  • BurningTurtle@programming.dev
  • Pierre-Yves Lapersonne@programming.dev
  • BE: 0.19.11
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org