Washhouse0749

joined 2 years ago
[–] [email protected] 1 points 1 week ago (1 children)

true enough, video acceleration is a bit harder / more expensive with an extra gpu, thats why i shyed away from suggesting vms

[–] [email protected] 2 points 1 week ago

im not on arch but the explanation is still valuable: https://wiki.archlinux.org/title/Systemd-nspawn

[–] [email protected] 4 points 1 week ago (4 children)

There are systemd nspawn Containers, you could install debian, or whatever you fancy inside, they provode simmillar isolation to docker containers and you can even integrate them with gui.

Containerized apps will then only see the container folder

https://michael.franzl.name/blog/posts/2023-12-02-run-graphical-wayland-applications-in-systemd-nspawn

[–] [email protected] 12 points 1 week ago

You could spawn their processes in a isolated network namespace, connected to a proxy via tun interface. You can then setup firewall rules on that interface to block all traffic, except the proxy an maybe your own dns - that should all be out of the users „reach“.

[–] [email protected] 5 points 7 months ago (1 children)

I have never had to to do this, but I think the way you would go about this is to pass the card to a linux vm. https://xyinn.org/md/freebsd/wifibox

[–] [email protected] 2 points 2 years ago* (last edited 2 years ago) (8 children)

Osmand to my knowledge Limits the number of offline maps you get for free, mapy.cz does not. In mapy.cz you also get the terrain for free.