Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
stock_toaster
4y ago
0 comments
Save
Share
I thought it also turned on/off spectre/meltdown mitigations (impacts branch prediction) on vulnerable cpus.
0 comments
1 comments · 1 top-level
top
newest
oldest
viraptor
4y ago
So TIL turning on seccomp by default turns on mitigations as well. This is not explicitly documented in Docker and it does have the possibility to opt out but doesn't.
https://www.phoronix.com/scan.php?page=article&item=linux-42...
j
/
k
navigate · click thread line to collapse