netnsdrop: consider using unprivileged user namespaces
This would allow dropping the use of sudo
and runuser
, and decrease the risk of privilege escalation to root.
@boyska, are there reasons why we can't use unprivileged user namespaces here?
This would allow dropping the use of sudo
and runuser
, and decrease the risk of privilege escalation to root.
@boyska, are there reasons why we can't use unprivileged user namespaces here?