Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
GitRoot
@forge@gts.gitroot.dev  路  activity timestamp 2 weeks ago

CI/CD Week Day 2! Security is key! Running directly on the host (bareMetal) is fast, but system admins need control over what processes run.

Enter Executor 2: bwrap (bubblewrap). This creates a very light container/sandbox, similar to what Flatpak uses!

You get the same execution capability (e.g., running `echo "hello" > README.md`), but in a confined, isolated way. It's the best of both worlds: speed and security!

Ready for the executor that lets you run any process? Follow me for tomorrow's reveal! 馃惓

#CICD #DevOps #Bubblewrap #Security #Containers

  • Copy link
  • Flag this post
  • Block
Stefano Marinelli boosted
r1w1s1
@r1w1s1@snac.bsd.cafe  路  activity timestamp 3 weeks ago

馃П First real sandboxing arrives on #NetBSD!
A GSoC 2025 project brings Linux-style namespaces (UTS + mount) to the kernel, paving the way for real isolation.

https://blog.netbsd.org/tnf/entry/gsoc2025_bubblewrap_sandboxing
#Bubblewrap #BSD #Security

  • Copy link
  • Flag this post
  • Block
r1w1s1
@r1w1s1@snac.bsd.cafe  路  activity timestamp 3 weeks ago

馃П First real sandboxing arrives on #NetBSD!
A GSoC 2025 project brings Linux-style namespaces (UTS + mount) to the kernel, paving the way for real isolation.

https://blog.netbsd.org/tnf/entry/gsoc2025_bubblewrap_sandboxing
#Bubblewrap #BSD #Security

  • Copy link
  • Flag this post
  • Block
Hacker News
@h4ckernews@mastodon.social  路  activity timestamp 4 weeks ago

Using bubblewrap to add sandboxing to NetBSD

https://blog.netbsd.org/tnf/entry/gsoc2025_bubblewrap_sandboxing

#HackerNews #bubblewrap #NetBSD #sandboxing #GSoC2025 #security #technology

  • Copy link
  • Flag this post
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About 路 Code of conduct 路 Privacy 路 Users 路 Instances
Bonfire social 路 1.0.1-alpha.8 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login