Skip to content

Application requires Docker API Exposure on other Hosts #75

@pvyswiss

Description

@pvyswiss

The Application is nice made and a big win. However, exposing Docker-API even in a LAN Net is required to scan other hosts in the net.
That is always a security risk. I suggest to spend some time work with docker, rc-services and systemD Agents, with an Key and Token beside an expected port to be exposed. Adding a new host works only over the https:// Protocol and he expects Port 4999, which is useless on a scanning target. Second, if you like to make a sys admin Life easy, they have probably an existing HomeLab or Productive Environment. So adding hosts by CIDR eg 192.168.1.0/24 would make sense as a batch operation, assuming you have an agent deployed on this hosts.

Image

Second, think about unpriviledged LXC Containers... Proxmox.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions