Hacker News new | past | comments | ask | show | jobs | submit login

just my two cents that netfilter (for which iptables is a frontend) is a kernel subsystem and therefore global to all containers on host.



Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: