1
0
Fork 0
Simple application VMs (hypervisor-based sandbox) based on Nix package manager.
 
 
 
Go to file
Jonas Heinrich 17f17be784 fix ethernet device pci slot conflict 2022-05-23 19:13:51 +00:00
.github Remove donate 2020-12-16 16:51:48 +00:00
docs docs/installation: fix typo 2021-12-20 13:40:52 +00:00
dot-desktop-fuse Switch to buildGoModule 2020-06-18 16:08:56 +00:00
nixos ooops, nixos cannot compute 2020-07-14 09:49:49 +00:00
os Build appvm from ../default.nix 2020-01-22 01:18:25 +00:00
patches virt-viewer: use title as subtitle 2020-02-02 02:13:57 +00:00
.envrc [feat] added environment files 2019-12-29 18:27:02 +03:00
.gitignore Update .gitignore 2020-01-05 06:12:18 +00:00
LICENSE Add LICENSE 2018-06-30 22:15:11 +00:00
Makefile Support remove run with `nix run` 2020-01-08 20:52:29 +00:00
README.md Update README.md 2022-05-23 19:10:39 +00:00
appvm.go Use per-VM qcow2, remove it after the start 2021-12-20 13:44:20 +00:00
base.nix.go Make sure xmonad always uses the latest libc 2021-12-20 13:48:24 +00:00
builtin.go Update builtin chromium appvm description 2020-01-02 17:52:22 +00:00
default.nix Update vendorSha256 2021-12-20 13:40:52 +00:00
generate.go Avoid of changing current work directory 2020-01-09 23:13:48 +00:00
go.mod Update go-libvirt 2021-11-04 13:24:32 +00:00
go.sum Update go-libvirt 2021-11-04 13:24:32 +00:00
local.nix.template.go Do no enable anything in default local.nix 2020-01-05 08:55:36 +00:00
shell.nix [feat] added environment files 2019-12-29 18:27:02 +03:00
xml.go fix ethernet device pci slot conflict 2022-05-23 19:13:51 +00:00

README.md

Documentation Status

Nix application VMs: security through virtualization

Simple application VMs (hypervisor-based sandbox) based on Nix package manager.

Uses one read-only /nix directory for all appvms. So creating a new appvm (but not first) is just about one minute.

appvm screenshot

Installation

See related documentation.

Usage

Search for applications

$ appvm search chromium

Run application

$ appvm start chromium
$ # ... long wait for first time, because we need to collect a lot of packages

Synchronize remote repos for applications

$ appvm sync

You can customize local settings in ~/.config/appvm/nix/local.nix.

Default hotkey to release cursor: ctrl+alt.

Shared directory

$ ls appvm/chromium
foo.tar.gz
bar.tar.gz

Close VM

$ appvm stop chromium

Automatic ballooning

Add this command:

$ appvm autoballoon

to crontab like that:

$ crontab -l
* * * * * /home/user/dev/go/bin/appvm autoballoon