@quad @lanodan
huh, TIL bwrap exists.
Is it basically like `unshare` that works without having root?
So you'd first switch to service-specific user, then run bwrap?
How would you start the service on boot? Have init switch user and call bwrap? Or the old ugly @reboot in user's crontab?
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.