Haha, Option D? Let's not give regular users the ability to start containers with elevated permissions. That's a disaster waiting to happen! I'm sticking with Option A.
Option A is the way to go. Containers need to be isolated from the host, and capabilities help achieve that by controlling the system calls they can make.
I think Option E is the right answer. Capabilities are used to prevent processes from performing actions that could break out of the container and affect the host system.
Option A seems like the correct answer. Capabilities are used to restrict the privileges of processes running inside the container, ensuring they don't have access to potentially dangerous system calls.
Azalee
1 months agoSerina
1 days agoMary
1 months agoGenevive
10 hours agoGlory
1 months agoClaudia
2 months agoJovita
16 days agoAlease
24 days agoYaeko
30 days agoAdell
1 months agoCraig
2 months agoGilma
2 months agoFannie
2 months agoRenay
2 months agoBernardo
2 months agoMammie
1 months agoPearlie
1 months agoTanesha
2 months agoVivienne
2 months agoMila
2 months ago