A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.
-
Updated
Jan 7, 2025 - C++
A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.
A lightweight, flexible, and safer alternative to chroot and/or Docker.
Add a description, image, and links to the chroot topic page so that developers can more easily learn about it.
To associate your repository with the chroot topic, visit your repo's landing page and select "manage topics."