purelynonfunctional

joined 2 years ago
[–] purelynonfunctional@programming.dev 1 points 1 year ago* (last edited 1 year ago) (1 children)

The Nix daemon itself still uses root at build/install time for now. NixOS doesn't have any built-in sandboxing for running applications à la Docker, though it does have AppArmor support. But then, NixOS doesn't generally have applications run as root (containerized or otherwise), unlike Docker.