Hacker News new | past | comments | ask | show | jobs | submit login

"Just in case you're unaware, you've seen Container Tabs, right? Now exactly what you want, but a pretty big step towards it."

Container tabs are better than nothing but what I have been wishing for for years is the ability to chroot jail a GUI application.

There would be very little performance penalty (vs. a full VM for each browser) since you aren't emulating the entire machine - it's just a chroot.

The idea is that in addition to their own root store of cookies/metadata/history/etc., each browser container could have its own IP address. I don't want to just keep my banking tab from talking to my throwaway-gmail-account tab - I want them to operate on different networks.

You can do this right now, with significant performance penalty, by running a full blown VM for each browser. There should be a way to run a GUI app in a chroot jail, but displaying to the same display.

EDIT: In fact, I have lamented this not existing for so many years I think I will have rsync.net fund it...




This is what firejail tries to do?

https://github.com/netblue30/firejail

Anything beyond that, and I think you need qubes-os:

https://www.qubes-os.org/




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: