Notes / Kubernetes / 07 Kubernetes Security / 3 Seccomp

3 — Seccomp

Seccomp filters which syscalls a container's process is allowed to make at the kernel level, and the RuntimeDefault profile alone blocks dozens of dangerous syscalls that ordinary application workloads never legitimately need.

· §202607201139-66 ·
Chapter Navigation
On This Page

3 — Seccomp

Purpose

[stub: seccomp]

Metadata

AuthorAmit Singh
Scopekubernetes

Local graph

Full graph →