Running docker safely on guixsd

From: Divan Santana
Subject: Running docker safely on guixsd
Date: Wed, 06 Feb 2019 11:55:07 +0200

Hi Guix,

I'm certainly not an expert on docker etc.

As per Arch Docker wiki [1] anyone added to docker group is root


Also I think it's quite easy to fire up a docker container with
privileged mode, by accident.

I'm just wondering what's best practice from a security perspective to
run docker images on guixsd?

Would be nice perhaps if there was a way to block privileged docker
containers by default.

Any suggestions and input on around this would be appreciated.


