Comment on What is Docker?

<- View Parent
jagged_circle@feddit.nl ⁨1⁩ ⁨week⁩ ago

Package managers like apt use cryptography to check signatures in everything they download to make sure they aren’t malicious.

Docket doesn’t do this. They have a system called DCT but its horribly broken (not to mention off by default).

So when you run docker pull, you can’t trust anything it downloads.

source
Sort:hotnewtop