Using SocketCAN/PF_CAN inside a docker container without exposing host net

(Tuxscreen) #1


I am trying to have a docker container hosting an app with Socketcan access, but for security reasons I do not want to expose the hosts network stack. (e.g docker run --net=host …)

It seems that there might be some solution (after reading some news on, but I cant find any manual.

Maybe here somebody knows something more?