Haha, Option D? Let's not give regular users the ability to start containers with elevated permissions. That's a disaster waiting to happen! I'm sticking with Option A.
Option A is the way to go. Containers need to be isolated from the host, and capabilities help achieve that by controlling the system calls they can make.
I think Option E is the right answer. Capabilities are used to prevent processes from performing actions that could break out of the container and affect the host system.
Option A seems like the correct answer. Capabilities are used to restrict the privileges of processes running inside the container, ensuring they don't have access to potentially dangerous system calls.
Azalee
3 months agoVicky
2 months agoTamie
2 months agoSerina
2 months agoMary
3 months agoNoble
2 months agoGenevive
2 months agoGlory
3 months agoClaudia
3 months agoJovita
2 months agoAlease
3 months agoYaeko
3 months agoAdell
3 months agoCraig
3 months agoGilma
4 months agoFannie
4 months agoRenay
4 months agoBernardo
4 months agoMammie
3 months agoPearlie
3 months agoTanesha
4 months agoVivienne
4 months agoMila
4 months ago