Hacker News new | ask | show | jobs
by ranger_danger 453 days ago
> I'd create an ephemeral tmpfs disk for each landlocked invocation

And now you've just invented firejail.

1 comments

UX-wise, yes. Internally firejail and landrun use different isolation APIs.
Firejail supports Landlock though: https://github.com/netblue30/firejail/pull/6078