-
Notifications
You must be signed in to change notification settings - Fork 87
Issues
is:issue state:open
is:issue state:open
Issue creation is restricted in this repository
Search results
secure_time: true can never sync — guest chrony is built without NTS
bugSomething isn't workingSomething isn't workingsecuritySecurity-related issue, report, or hardening workSecurity-related issue, report, or hardening workStatus: Open.#745 In Dstack-TEE/dstack;- Status: Open.#736 In Dstack-TEE/dstack;
AMD SEV-SNP support (tracking)
documentationImprovements or additions to documentationImprovements or additions to documentationStatus: Open.#713 In Dstack-TEE/dstack;- Status: Open.#707 In Dstack-TEE/dstack;
- Status: Open.#699 In Dstack-TEE/dstack;
Security: App keys and decrypted env vars written with world-readable permissions
securitySecurity-related issue, report, or hardening workSecurity-related issue, report, or hardening worksecurity: hardeningSecurity defense-in-depth or hardening workSecurity defense-in-depth or hardening worksecurity: reportPublic security report or already-public security findingPublic security report or already-public security findingStatus: Open.#606 In Dstack-TEE/dstack;Disk encryption key and WireGuard key visible in /proc/PID/cmdline
securitySecurity-related issue, report, or hardening workSecurity-related issue, report, or hardening worksecurity: hardeningSecurity defense-in-depth or hardening workSecurity defense-in-depth or hardening worksecurity: reportPublic security report or already-public security findingPublic security report or already-public security findingStatus: Open.#556 In Dstack-TEE/dstack;Static HKDF salt "RATLS" with no key versioning
securitySecurity-related issue, report, or hardening workSecurity-related issue, report, or hardening worksecurity: reportPublic security report or already-public security findingPublic security report or already-public security findingsecurity: roadmapSecurity-related roadmap or compatibility design workSecurity-related roadmap or compatibility design workStatus: Open.#552 In Dstack-TEE/dstack;- Status: Open.#539 In Dstack-TEE/dstack;
- Status: Open.#422 In Dstack-TEE/dstack;
Adopt RFC 8785 (JCS) for canonical compose hash calculation
securitySecurity-related issue, report, or hardening workSecurity-related issue, report, or hardening worksecurity: roadmapSecurity-related roadmap or compatibility design workSecurity-related roadmap or compatibility design workStatus: Open.#411 In Dstack-TEE/dstack;docker run --cpus 2 ...doesn't workhelp wantedExtra attention is neededExtra attention is neededStatus: Open.#410 In Dstack-TEE/dstack;