Skip to content(if available)orjump to list(if available)

NsJail: A light-weight process isolation tool for Linux

5-

it'd be interesting to see a comparison of these -- the building blocks are (mostly) the same, but the interfaces differ in interesting ways:

- nsjail

- firejail

- bubblewrap

- runc

etc.

anonzzzies

Me too, for me the ease of use is rather important. NSJail is very easy to use, I am not sure which ones I tried when looking for these tools but some of them were an absolute pain to get going.

sushidev

And jailer from firecracker and systemd itself which has some similar capabilities