A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security. It utilizes Linux namespace subsystem, resource limits, and the seccomp-bpf syscall filters of the Linux kernel.

Features

  • Isolate networking services (e.g. web, time, DNS), by isolating them from the rest of the OS
  • Host computer security challenges (so-called CTFs)
  • Contains invasive syscall-level OS fuzzers
  • Offers three distinct operational modes
  • Utilizes kafel seccomp-bpf configuration language for flexible syscall policy definitions
  • Uses expressive, ProtoBuf-based configuration file

Project Samples

Project Activity

See All Activity >

Categories

Security

License

Apache License V2.0

Follow nsjail

nsjail Web Site

Other Useful Business Software
$300 in Free Credit Towards Top Cloud Services Icon
$300 in Free Credit Towards Top Cloud Services

Build VMs, containers, AI, databases, storage—all in one place.

Start your project in minutes. After credits run out, 20+ products include free monthly usage. Only pay when you're ready to scale.
Get Started
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of nsjail!

Additional Project Details

Operating Systems

Linux, Mac, Windows

Programming Language

C++

Related Categories

C++ Security Software

Registered

2024-06-20