readme example for Isolation with access to a private, cloned interface (requires root/setuid)
not able to talk to internet
#240
Unanswered
danthegoodman1
asked this question in
Q&A
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I've compiled nsjail on a fresh ubuntu 24.04 machine from hetzner cloud with the following network information:
When running the example provided at https://github.com/google/nsjail?tab=readme-ov-file#isolation-with-access-to-a-private-cloned-interface-requires-rootsetuid I am unable to connect to the server:
I observe the same issues with
curl
andwget
as well.On the base machine
nc
works as expected:Is there a capability I'm missing?
For reference, my goal is that the jailed process will be able to talk to the outside world (e.g. the internet), but won't be able to access something also listening on the host (e.g. a server running on another process)
Beta Was this translation helpful? Give feedback.
All reactions