shoenig/nomad-pledge-driver
Nomad task driver capable of blocking unwanted syscall and filesystem access. Based on the pledge utility for Linux by Justine Tunney
GoMPL-2.0
Issues
- 1
handle new cgroup layout for nomad 1.7
#74 opened by shoenig - 0
- 0
set cpu bandwidth
#60 opened by shoenig - 2
- 0
support for host PID/IPC namespacing
#56 opened by shoenig - 0
idea: fingerprint unshare and nsenter paths
#51 opened by shoenig - 1
idea: support for network bridge mode via pledge
#48 opened by shoenig - 0
e2e: flaky cases when trying to read from logs
#47 opened by shoenig - 0
- 3
- 0
- 1
- 0
- 0
use TMPDIR instead of HOME
#3 opened by shoenig