You must log in or # to comment.
Uuuh ngl, this article is pretty meh. He’s essentially enumerating a handful or mistakes that people with 2h of experience with Docker make or that have completely skipped its docs. Idk, might be overreacting.
At my work we use docker and we use port:port for all containers everywhere. This is after staging database has been wiped by a “ransomware” attack.
Some people never learn… but if those ports are only exposed internally and there is a strong firewall to the outside it is somewhat less bad.
We use UFW and doing this on docker bypasses UFW.