Michael Kerrisk :: Understanding Linux user namespaces

  Рет қаралды 1,776

CoreCppIL

CoreCppIL

Күн бұрын

Presented at the Core C++ 2023 conference.
User namespaces are at the heart of many interesting Linux technologies that allow isolation and sandboxing of applications, for example running containers without root privileges and sandboxes for web browser plug-ins. In this presentation, we’ll look in detail at user namespaces, building up a basic understanding of what a user namespace is and going on to questions such as: what does being "superuser inside a user namespace" allow you to do (and what does it not allow); and what is the relationship between user namespaces and other namespace types (PID, UTS, network, etc.)? We’ll also employ some simple shell commands to create and experiment with user namespaces in order to better understand how they work.
-----
Michael Kerrisk is a trainer, author, and programmer who has a passion for investigating and explaining software systems. He is the author of "The Linux Programming Interface", a widely acclaimed book on Linux (and UNIX) system programming. He has been actively involved in the Linux development community since 2000, operating mainly in the area of testing, design review, and documentation of kernel-user-space interfaces and was for many years the maintainer of the Linux "man-pages" project, which provides the primary documentation for Linux system calls and C library functions. Michael is a New Zealander, living in Munich, Germany.

Пікірлер: 3
@coolingice6221
@coolingice6221 5 күн бұрын
That name space is one piece of work
@coolingice6221
@coolingice6221 5 күн бұрын
I lined it up real good but it all went side ways during staging
@Roibarkan
@Roibarkan 10 ай бұрын
Excellent talk!!
Elazar Leibovich :: UB effects on real world projects
25:57
Containers unplugged: understanding user namespaces - Michael Kerrisk
54:05
My little bro is funny😁  @artur-boy
00:18
Andrey Grechka
Рет қаралды 11 МЛН
What's in a Name? - Linux Namespaces
21:13
DJ Ware
Рет қаралды 17 М.
Containers unplugged: Linux namespaces - Michael Kerrisk
53:39
NDC Conferences
Рет қаралды 19 М.
Software Networking and Interfaces on Linux: Part 1
45:42
Matt Turner
Рет қаралды 17 М.
Run As “Root”, Not Root: User Namespaces In K8s- Marga Manterola, Isovalent & Rodrigo Campos Catelin
22:26
User Namespaces Part 1, Phil Estes
11:34
Docker
Рет қаралды 10 М.
Low Price Best 👌 China Mobile 📱
0:42
Tech Official
Рет қаралды 717 М.
Cadiz smart lock official account unlocks the aesthetics of returning home
0:30
Gizli Apple Watch Özelliği😱
0:14
Safak Novruz
Рет қаралды 4,8 МЛН