#Namespaces

2025-06-12

Uuuh, :ruby: #Ruby will likely get #Namespaces although the syntax will change because #GitLab already uses `Namespace` a lot and @matz doesn't want to break it for them.

But that is indeed a feature that I was missing from #rubylang. 🤩

#balticruby #balticruby2025 #riga @balticruby

Matz presenting a first draft for Ruby namespaces
2025-06-05

От неймспейсов к тенантам: как dBrain обеспечивает изоляцию и управление в крупном проекте

Как обеспечить эффективное разделение ресурсов и зон ответственности в крупном проекте? Как гарантировать, что каждое подразделение имеет собственные настройки и не зависит от сбоев в других частях системы? Ответ - мультитенантность. В этой статье мы расскажем, как реализовали такой подход в платформе контейнеризации dBrain.cloud , какие преимущества это дало и почему мы отказались от готовых решений.

habr.com/ru/companies/dbraincl

#dbrain #kubernetes #keycloak #tenancy #мультитенантность #capsule #grafana #k8s #namespaces #тенанты

N-gated Hacker Newsngate
2025-05-30

🚀🎉 Hold the presses! adds "Namespaces" to its secret manager, enabling isolated environments for your secrets. 🤔 Finally, a solution to the problem of "Where did I put my secrets again?" 😅 Thanks, OpenBao, for making secret management feel like a game of hide-and-seek with a twist! 🙄🔍
openbao.org/blog/namespaces-an

TechKeysXTechKeysX
2025-05-21

Namespaces and Partial Classes in C# Tip #29 In this video, we explain how namespaces and partial classes work in C#, especially within Windows Forms applications. Learn how Visual Studio splits form code across files and why matching namespaces is crucial for building your UI and logic cleanly.

Anyone currently have a take on the #security concerns of #linux #kernel user #namespaces #usernamespaces? I have been rereading into it wondering whether enabling or disabling is the best approach. They seem rather insignificant with considerable surface area for attack, from my understanding. However, more applications check for/need them nowadays.

I think kernel #hardening advice is still to disable. Makes me wonder if should e.g. be considered only if #AppArmor / #SELinux is active.

DeaDSouL :fedora:DeaDSouL@fosstodon.org
2025-04-21

What if I told you, #Linux doesn’t just support multiple users — it supports multiple isolated worlds via #namespaces, #cgroups, and #containers.

N-gated Hacker Newsngate
2025-03-02

🎉 TypeScript 5.8 swoops in with its shiny new flag, eager to send and to the retirement village of irrelevant coding features. 😜 Meanwhile, coders rejoice as Node.js finally catches up with the cool kids, and , for running TypeScript sans build step, as long as you're not too attached to those pesky old constructs. 🚫✨
blog.disintegrator.dev/posts/o .8

Nine Internet Solutions AGninecloudnavigators
2025-02-25

Solve the multi-tenancy problem in Kubernetes and reduce costs at the same time? 🤔 Virtual clusters – aka vClusters – have their own API server and are therefore more powerful and better isolated than namespaces. 🚀🏝️ But that's not all: they are also much cheaper than real Kubernetes clusters. 💰 You can find all further details about our vCluster offer here nine.ch/products/vcluster/ on our website. 🔗

2025-02-14

[Перевод] Как собрать Linux-контейнер с нуля и без Docker

Перевели для вас статью про то, как с нуля создать Linux-контейнер, аналогичный тому, который можно запустить с помощью Docker, но без использования Docker или других инструментов контейнеризации.

habr.com/ru/companies/flant/ar

#контейнеризация #контейнеры #containers #cgroups #namespaces #linux #linuxконтейнеры #docker #root #overlayfs

#xml #namespaces - good idea but big source of errors!

2025-02-03

@yoasif @mozillaofficial

Mind to explain why??

The #seccomp filter in #flatpak blocks apps from creating user #namespaces.

#Chromium has a fork server and using #zypak at least works as a workaround.

Firefoxes (current, since a few years) solution is to just use no sandbox, only seccomp-bpf. Chromium doesnt even launch.

@ublue

2025-01-18

@kde@floss.social @kde@lemmy.kde.social

Can you tell us what happens on the "sandbox all the things" goal?

I think this is a pretty crucial step forward, even though #sandbox technologies (most often through user namespaces) are more problematic than I initially thought.

(Basically, user #namespaces open up #privesc dangers to the monolithic #kernel, which is incredible. #Android and #ChromeOS use #LXC, mounts and #SELinux for #sandboxing)

2024-12-22

Подмания: запускаем графические приложения в контейнерах

Привет, Хабр! Это вторая статья о контейнеризации как стиле повседневного использования графических приложений в ОС Линукс. Здесь мы научимся безопасно запускать браузер и менеджер паролей, так как это близкие потребности. Здесь не будут повторяться инструкции, данные в первой статье, так как предполагается, что они известны читателю. Посему, без долгих предисловий, ныряем под кат!

habr.com/ru/articles/868772/

#podman #chromium #namespaces #uid #gid #контейнеры #браузеры #posix #acl #dockerfile

Zygmunt Krynickizygoon@fosstodon.org
2024-12-07

Relaxing with tea and #mount #namespaces. Written from memory, please correct me if I’m wrong.

Photo of a remarkable tablet with handwritten notes about mount namespace propagation.
2024-11-30

I'm using #ansible to automate #helm which automates #kubectl which automates #crio which automates #cgroups and #namespaces. #kubernetes is #turtlesallthewaydown

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst