A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security. It utilizes Linux namespace subsystem, resource limits, and the seccomp-bpf syscall filters of the Linux kernel.

Features

  • Isolate networking services (e.g. web, time, DNS), by isolating them from the rest of the OS
  • Host computer security challenges (so-called CTFs)
  • Contains invasive syscall-level OS fuzzers
  • Offers three distinct operational modes
  • Utilizes kafel seccomp-bpf configuration language for flexible syscall policy definitions
  • Uses expressive, ProtoBuf-based configuration file

Project Samples

Project Activity

See All Activity >

Categories

Security

License

Apache License V2.0

Follow nsjail

nsjail Web Site

Other Useful Business Software
Try Google Cloud Risk-Free With $300 in Credit Icon
Try Google Cloud Risk-Free With $300 in Credit

No hidden charges. No surprise bills. Cancel anytime.

Use your credit across every product. Compute, storage, AI, analytics. When it runs out, 20+ products stay free. You only pay when you choose to.
Start Free
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of nsjail!

Additional Project Details

Operating Systems

Linux, Mac, Windows

Programming Language

C++

Related Categories

C++ Security Software

Registered

2024-06-20