StemJail: Dynamic Role Compartmentalization
-
Updated
Oct 1, 2016 - Rust
StemJail: Dynamic Role Compartmentalization
Runs commands in Linux containers with configurable levels of isolation.
Kernel patches for non-init user namespace on FUSE filesystem
Very experimental docker authorization plugin, disabling some trivial ways of gaining root via docker
Experiments with unshare
A nix shell running in a (thin) container
A pure-Go implementation of fakeroot using Linux user namespaces.
Nesting containers with podman
Simple desktop application sandboxing tool for GNU\Linux
Limit SFTP access to a remote (Linux) system
Low-level unprivileged sandboxing tool used by Flatpak and similar projects
Add a description, image, and links to the user-namespaces topic page so that developers can more easily learn about it.
To associate your repository with the user-namespaces topic, visit your repo's landing page and select "manage topics."