Still In Development, Landlock Aims To Yield Powerful Security Sandboxes For Linux
![LINUX SECURITY](/assets/categories/linuxsecurity.webp)
Landlock's goal is to "allow any process, including unprivileged ones, to create powerful security sandboxes comparable to XNU Sandbox or OpenBSD Pledge. This kind of sandbox is expected to help mitigate the security impact of bugs or unexpected/malicious behaviors in user-space applications."
Landlock is making use of eBPF as the security policy language rather than coming up with its own language like in SELinux or AppArmor.
Linux administrators wishing to learn more about the continued work on the Landlock security module can find the v7 patches on the kernel mailing list.
4 Comments