Files
2025-02-07 00:17:34 +00:00

18 lines
448 B
Plaintext

---
syntax: markdown
tags: [tldr, linux]
source: https://github.com/tldr-pages/tldr.git
---
# bwrap
> Run programs in a lightweight sandbox.
> More information: <https://manned.org/bwrap>.
- Run a program in a read-only environment:
`bwrap --ro-bind / / {{/bin/bash}}`
- Give the environment access to devices, process information and create a `tmpfs` for it:
`bwrap --dev-bind /dev /dev --proc /proc --ro-bind / / --tmpfs /tmp {{/bin/bash}}`