294843ef23
These settings need to be in the HostConfig so that they are not committed to an image and cannot introduce a security issue. We can safely move this field from the Config to the HostConfig without any regressions because these settings are consumed at container created and used to populate fields on the Container struct. Because of this, existing settings will be honored for containers already created on a daemon with custom security settings and prevent values being consumed via an Image. Signed-off-by: Michael Crosby <crosbymichael@gmail.com> Conflicts: daemon/create.go changing config to hostConfig was required to fix the build |
||
---|---|---|
.. | ||
compare.go | ||
config.go | ||
config_test.go | ||
exec.go | ||
hostconfig.go | ||
merge.go | ||
parse.go | ||
parse_test.go |