Hi everyone,
after two years maintaining a FreePBX 16 + Asterisk 16 Docker setup,
I’ve just released an updated version with FreePBX 17 and Asterisk 21.
I like your project. Are you already using it in a production environment? If you don’t mind I have a few questions regarding security and performance:
How do you mitigate the risk of supply chain attacks? To me this would be high on the list of reasons not to use this image in production.
The NET_ADMIN permission is unavoidable, right?
You’re assembling the different components (Asterisk, FreePBX, Fail2Ban) individually. Doesn’t that create a lot of overhead for new versions and possibly vulnerabilities?