Skip to content

feat(sandbox): expose optional username and hostname - #4220

Open
ebusto wants to merge 2 commits into
NVIDIA:mainfrom
ebusto:feat/4216-sandbox-identity-exposure/ebusto
Open

ebusto wants to merge 2 commits into
NVIDIA:mainfrom
ebusto:feat/4216-sandbox-identity-exposure/ebusto

Conversation

@ebusto

@ebusto ebusto commented Oct 5, 2026

Copy link
Copy Markdown

Summary

Add opt-in sandbox username and hostname exposure. Users can expose their authenticated username without changing the sandbox UID/GID and copy the parent host FQDN into Docker sandboxes.

Related Issue

Closes #4216

Changes

  • Add --username and --hostname sandbox creation flags.
  • Propagate these options through the public API and supported SDKs.
  • Reconcile authenticated usernames across Docker, Podman, and VM runtimes.
  • Configure Docker hostname, domain name, and local hostname resolution.
  • Validate supported drivers and prevent caller-supplied identity overrides.
  • Document the new sandbox creation options.
  • Exclude reverse-DNS behavior from this change.

Testing

  • Checks appropriate to the affected code and behavior pass
  • Unit tests added/updated (if applicable)
  • E2E tests added/updated (if applicable)

Verification included the full pre-commit suite, focused Rust tests, Python tests, Go SDK tests, TypeScript tests/type checking/linting, protobuf linting, and generated-binding freshness checks.

Checklist

  • Follows Conventional Commits
  • Commits are signed off (DCO)
  • Architecture docs updated (if applicable)

ebusto added 2 commits October 5, 2026 14:02
Signed-off-by: Eric Busto <ebusto@nvidia.com>
Signed-off-by: Eric Busto <ebusto@nvidia.com>
@ebusto
ebusto requested review from a team, derekwaynecarr, mrunalp and sjenning as code owners October 5, 2026 22:05
@copy-pr-bot

copy-pr-bot Bot commented Oct 5, 2026

Copy link
Copy Markdown

This pull request requires additional validation before any workflows can run on NVIDIA's runners.

Pull request vetters can view their responsibilities here.

Contributors can view more details about this message here.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Optionally expose the host and user identity

1 participant