You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This issue tracks the feature to add distroless support to new and variants of existing Beam container images.
What problem does this solve
Portable runner execution relies on containerization of Beam’s dependencies. These container images harbor several security vulnerabilities. One vector of these vulnerabilities stem from the use of container image bases that provide access to the operating system, which may unnecessarily expose the development environment. For an informative and entertaining discussion on this, see Containers Are Not VMs! Which Base Container (Docker) Images Should We Use?.
Summary
This issue tracks the feature to add distroless support to new and variants of existing Beam container images.
What problem does this solve
Portable runner execution relies on containerization of Beam’s dependencies. These container images harbor several security vulnerabilities. One vector of these vulnerabilities stem from the use of container image bases that provide access to the operating system, which may unnecessarily expose the development environment. For an informative and entertaining discussion on this, see Containers Are Not VMs! Which Base Container (Docker) Images Should We Use?.
Goals
The text was updated successfully, but these errors were encountered: