Firejail | security sandbox
2024-11-09
«Restrics the running environment of untrusted applications via namespaces and seccomp-bpf.
Allows a process and its descendants to have their own shared kernel resources (network stack, process table, mount table).
eg. bind a program to eth0»
Allows a process and its descendants to have their own shared kernel resources (network stack, process table, mount table).
eg. bind a program to eth0»