Low-level unprivileged sandboxing tool used by Flatpak and similar projects
-
Updated
Sep 3, 2024 - C
Low-level unprivileged sandboxing tool used by Flatpak and similar projects
StemJail: Dynamic Role Compartmentalization
Simple desktop application sandboxing tool for GNU\Linux
Very experimental docker authorization plugin, disabling some trivial ways of gaining root via docker
Experiments with unshare
A pure-Go implementation of fakeroot using Linux user namespaces.
Kernel patches for non-init user namespace on FUSE filesystem
Runs commands in Linux containers with configurable levels of isolation.
A nix shell running in a (thin) container
Nesting containers with podman
Add a description, image, and links to the user-namespaces topic page so that developers can more easily learn about it.
To associate your repository with the user-namespaces topic, visit your repo's landing page and select "manage topics."