Up next

LXD for multi-user systems

0 Views· 12/25/24
admin
admin
Subscribers
0

Accessing LXD has traditionally required and granted a lot of privileges.
Effectively making anyone who could interact with LXD a full local administrator.

This isn't very compatible to restricted or multi-user systems where a specific user shouldn't be able to elevate their privileges and take over the entire system.

With LXD 4.22, LXD introduced a new user daemon which allows for two level of LXD interactions, the traditional complete LXD access granted to system administrators and a new, much more restricted kind of access suitable to regular users.

Such users get an automatically generated LXD projects allowing them to run their own (unprivileged) containers and virtual-machines, isolated from anyone else's instances and sufficiently restricted to prevent privilege escalation.

RESOURCES:
- Blog: https://ubuntu.com/blog/shared....-development-environ
- Forum post: https://discourse.ubuntu.com/t..../easy-multi-user-lxd
- LXD projects: https://documentation.ubuntu.c....om/lxd/en/latest/pro
- Website: https://ubuntu.com/lxd
- Community forum: https://discourse.ubuntu.com/c/lxd/

Show more

 0 Comments sort   Sort By


Up next