[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#959204: ITP: rootlesskit -- Linux-native "fake root" for rootless containers



Package: wnpp
Severity: wishlist
Owner: Shengjing Zhu <zhsj@debian.org>

* Package name    : rootlesskit
  Version         : 0.9.4-1
  Upstream Author : Akihiro Suda
* URL             : https://github.com/rootless-containers/rootlesskit
* License         : Apache-2.0
  Programming Lang: Go
  Description     : Linux-native "fake root" for rootless containers

 The purpose of RootlessKit is to run Docker and
 Kubernetes as an unprivileged user (known as "Rootless mode"),
 so as to protect the real root on the host from potential
 container-breakout attacks.
 .
 RootlessKit creates user_namespaces(7) and mount_namespaces(7),
 and executes newuidmap(1)/newgidmap(1) along with subuid(5) and
 subgid(5).

 Package will be prepared at
 http://salsa.debian.org/go-team/packages/rootlesskit


Reply to: