▲ | christophilus 6 days ago | ||||||||||||||||
Similar, but in a podman container which shares nothing other than the source code directory with my host machine. | |||||||||||||||||
▲ | evertheylen 5 days ago | parent | next [-] | ||||||||||||||||
I do too, but I found it non-trivial to actually secure the podman container. I described my approach here [1]. I'm very interested to hear your approach. Any specific podman flags or do you use another tool like toolbx/distrobox? | |||||||||||||||||
| |||||||||||||||||
▲ | 0cf8612b2e1e 5 days ago | parent | prev [-] | ||||||||||||||||
I would love if some experts could comment on the security profile of this. It sounds like it should be fine, but there are so many gotchas with everything that I use full VMs for development. One immediate stumbling block- the IDE would be running in my host, which has access to everything. A malicious IDE plugin is a too real potential vector. | |||||||||||||||||
|