skinny.

Latest / Linux Server Admin with Fexingo: Sysadmin, Bash, and Server Engineering

How to Use Linux Server Landlock for Unprivileged Sandboxing

In this episode, Lucas and Luna explore Landlock, the Linux security module that lets unprivileged processes sandbox themselves without root. They walk through a concrete example: running an untrusted binary that can only access a specific directory, using a simple C program and a few syscalls. They explain how Landlock compares to namespaces, cgroups, and seccomp, and why it's a game-changer for server hardening. If you're a sysadmin or developer looking for a lightweight way to contain risky applications, this episode gives you the practical starting point. Plus, they discuss how Landlock…

The skinny

The skinny isn't ready yet — notes appear once the transcript is processed.