User Namespace

Back to Namespaces

Maps user and group IDs inside the namespace to different IDs outside. A process can be root (UID 0) inside its namespace while being an unprivileged user on the host. This is the basis of rootless containers, significantly improving security.

operating-systems linux containers security