A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.
-
Updated
Nov 4, 2024 - C++
A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.
Judging daemon for programming contests
Control plane for system processes
A GNU/Linux specific toolkit for making and managing jails which are OS level virtualization containers. Implemented using shell scripts with chroot, linux namespaces, pivot_root and embedded into busybox.
Python library to control Linux kernel namespaces
Process isolation for Linux using namespaces, resource limits and seccomp.
[POC] Rootless Containers without `/etc/subuid` and `/etc/subgid`
Generate runlets from containerized Unix processes
Easy Application Sandboxing
haskell library to work with linux namespaces
Sandbox for multi-process applications for unprivileged users on Linux
an Erlang library for interacting with Unix processes
A repository to hold code for security related examples
Jail-shell is a linux security tool mainly using chroot, namespaces technologies, limiting users to perform specific commands, and access sepcific directories.
Simple Container implementation using linux namespaces and cgroups.
Add a description, image, and links to the linux-namespaces topic page so that developers can more easily learn about it.
To associate your repository with the linux-namespaces topic, visit your repo's landing page and select "manage topics."