Logo of a litchi fruit Litchi Pi
Litchi Pi
  • Accueil
  • Articles
  • RSS
  • Email
  • Github
  • Mastodon
  • Executing the binary
    23/08/2022
    (serie "Writing a container in rust")
    Execute a binary inside our container, resolve issues of dynamic libraries, mount directories inside the environment. Conclusion of the serie
  • Syscalls and resources restriction
    10/03/2022
    (serie "Writing a container in rust")
    How to restrict the binary running inside our container in order to protect our system. Introduction to seccomp, syscalls, cgroups, rlimit
  • User namespaces and Linux capabilities
    06/01/2022
    (serie "Writing a container in rust")
    Set up user namespaces, map the UID / GID, restrict the child process with linux capabilities
  • Defining the container environment
    04/01/2022
    (serie "Writing a container in rust")
    Set the container hostname, modify the container mount point, pivoting the root.
  • Birth of a child process
    12/11/2021
    (serie "Writing a container in rust")
    Prepare inter-process communication (IPC), create a clone of the parent process while restricting its scope using namespaces.
  • Creating the skeletton
    03/10/2021
    (serie "Writing a container in rust")
    Getting the configuration, creating the skeletton for the container, checking the Linux kernel version for compatibility
  • Starting the project
    30/09/2021
    (serie "Writing a container in rust")
    Creation of the project, the logging system, the error handlings, and arguments validation
  • Introduction to containers
    20/09/2021
    (serie "Writing a container in rust")
    Overview of what is a container, the problem of software isolation it solves and how does it compares to other solutions.