# Docker: InfraKit Under the Hood - **期号**: SRE Weekly Issue #56(2017-01-22) - **作者**: — - **链接**: https://blog.docker.com/2017/01/infrakit-hood-high-availability/ ## 简介 Docker posted this article on how they designed InfraKit for high availability. ## 正文 ![](https://www.docker.com/app/uploads/brand/background/gray.png) ## Docker Blog [Aug 18, 2026](https://www.docker.com/blog/ai-agent-security-systems-problem/) #### 17,600 Actions: Agent Security Is a Systems Problem The OpenAI/Hugging Face incident exposed a new challenge for AI agent security. 17,600 attacker actions show why AI agent security can’t rely on human review. Explore the controls needed to constrain, observe, and govern agents at speed. Read now ![Featured image](https://www.docker.com/app/uploads/2025/03/image-1024x1024.png) ![Posts by Mark Cavage](https://www.docker.com/app/uploads/2025/07/Headshot-mark-cavage-622x622px.png) - Sep 8, 2026#### 6 Benefits of Sandbox Environments (and How Docker Sandboxes Delivers Them)Learn about the key benefits of sandbox environments with Docker including isolation, definable controls, secrets credential handling, and more. Read now ![Posts by Kevin Wittek Kevin Wittek profile photo](https://www.docker.com/app/uploads/2025/10/5088104-Kevin-Wittek-64x64.jpeg) ![Posts by Srini Sekaran](https://www.docker.com/app/uploads/2025/10/headshot-srini-sekaran-square-64x70.jpeg) - Sep 3, 2026#### YOLO Mode: Agent Autonomy Without the GuardrailsYOLO mode lets an AI agent run without asking permission. Learn what it is, why it’s risky, and how to run it safely. Read now ![Posts by Eric Jia](https://www.docker.com/app/uploads/2025/11/eric.jpeg) ![Posts by Srini Sekaran](https://www.docker.com/app/uploads/2025/10/headshot-srini-sekaran-square-64x70.jpeg) - Docker Captain Sep 2, 2026#### Building Reproducible AI Evaluation Workflows with Docker SandboxesLearn how Docker Sandboxes can make AI evaluation workflows more reproducible with consistent execution, structured artifacts, and runtime evidence. Read now ![Posts by Karan Verma](https://www.docker.com/app/uploads/2025/06/1517238290084-Karan-Verma-1.jpg) - Sep 2, 2026#### Below the Harness: Governing a Multi-Model, Multi-Harness WorldWe believe the future is a multi-model, multi-harness world. And we think it needs a new trust model. In 1988, Norm Hardy described a problem that had been quietly breaking systems for years: the confused deputy. A program that takes action using its permissions instead of yours. Today, every AI agent is that deputy. It… Read now ![Posts by Srini Sekaran](https://www.docker.com/app/uploads/2025/10/headshot-srini-sekaran-square-64x70.jpeg) - Aug 31, 2026#### Secure by default is your only way forwardThe newest worker on your team builds with whatever it finds and never asks what deserves your trust. Our answer is a hardened foundation and a boundary built for agents. Read now ![Posts by Vishrut Iyengar Profile Picture of Vishrut Iyengar](https://www.docker.com/app/uploads/2026/08/Profic-Picture-Vishrut-Iyengar-64x64.jpg) - Aug 25, 2026#### Moving from Minimus to Docker Hardened ImagesThe Minimus registry goes offline on October 22. Here is the migration path, the free help Docker is offering, and where to start. Read now ![Posts by Vishrut Iyengar Profile Picture of Vishrut Iyengar](https://www.docker.com/app/uploads/2026/08/Profic-Picture-Vishrut-Iyengar-64x64.jpg) ![Posts by Ranti Familusi](https://www.docker.com/app/uploads/2026/08/ranti-familusi-64x64.png) - Aug 24, 2026#### MinIO End of Life: How to Stay Patched and Audit-Ready with Docker ELSMinIO reached end of life in February 2026. Docker Extended Lifecycle Support (ELS) keeps end-of-life software like it patched, compliant, and audit-ready for up to five years, covering versions upstream no longer supports all the way up to entire projects. Read now ![Posts by Vishrut Iyengar Profile Picture of Vishrut Iyengar](https://www.docker.com/app/uploads/2026/08/Profic-Picture-Vishrut-Iyengar-64x64.jpg) - Aug 21, 2026#### Running AI agents in GitHub Actions with Docker SandboxesRun AI agents in GitHub Actions with Docker Sandboxes. See how isolated agents can run Testcontainers tests, fix code, and open draft pull requests. Read now ![Posts by Oleg Selajev Oleg Šelajev](https://www.docker.com/app/uploads/2024/07/unnaOleg-Selajev.webp)