aws / aws/containers-roadmap

[ECS/Fargate] [request]: Document on required Linux caps for ECS Exec

Open
#1,360 0 comments 5 reactions 0 assignees View on GitHub
ECS Proposed
Dominant language
Shell
Stars
5.4k
Forks
334
PR merge metrics
No merged PRs in 30d

Description

### Community Note

* Please vote on this issue by adding a 👍 [reaction](https://blog.github.com/2016-03-10-add-reactions-to-pull-requests-issues-and-comments/) to the original issue to help the community and maintainers prioritize this request
* Please do not leave "+1" or "me too" comments, they generate extra noise for issue followers and do not help prioritize the request
* If you are interested in working on this issue or have submitted a pull request, please leave a comment

**Tell us about your request**

Give minimal [Linux capabilities](https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-properties-ecs-taskdefinition-kernelcapabilities.html) to an ECS task while keeping ECS Exec working.

**Which service(s) is this request for?**

Fargate, ECS.

**Are you currently working around this issue?**

The default permissions works but I want to drop as much Linux capabilities as possible.

**Additional context**

aws-containers/amazon-ecs-exec-checker#21

Contributor guide

Open the contributing guide

Research direction

No target documentation file or test is named. Start by reviewing the ECS Exec and Fargate documentation alongside the linked aws-containers/amazon-ecs-exec-checker#21 issue; done means the documentation explains which minimal Linux capabilities are required for ECS Exec and how to configure them.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws, linux
Domain
cloud, documentation, security
Issue type
Documentation
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.