{"repo":"rootless-containers/usernetes","free":true,"listed":false,"github":"https://github.com/rootless-containers/usernetes","clone":"git clone https://github.com/rootless-containers/usernetes.git","description":"Kubernetes without the root privileges","language":"Shell","stars":986,"topics":["rootless-containers","kubernetes","docker","containerd","cri-o"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"Usernetes: Kubernetes without the root privileges (Generation 3) Usernetes deploys a Kubernetes cluster without requiring root privileges on the host, so as to mitigate potential container-breakout vulnerabilities. Two deployment modes are supported: - Kubernetes-in-Docker (default): Deploys a Kubernetes cluster inside Rootless Docker, Rootless Podman, or Rootless nerdctl. This mode is similar to Rootless kind and Rootless minikube, but Usernetes supports creating a cluster with multiple hosts. - Kubernetes-in-Kubernetes : Usernetes runs inside an existing Kubernetes cluster, as UserNS-enabled pods ( hostUsers: false ). Project history - Generation 1 ( gen1 branch, 2018-2023): The original Usernetes, implemented in the style of \"Kubernetes The Hard Way\". This generation was hard to use due to lack of support for kubeadm. - Generation 2 ( gen2 branch, 2023-2026): Switched to Kubernetes-in-Docker mode for simplicity. This switch enabled supporting kubeadm. - Generation 3 (2026-present): Additionally added support for Kubernetes-in-Kubernetes mode. Components - Cluster configuration: kubeadm - CRI: containerd - OCI: runc - CNI: Flannel [!NOTE] The documentation below is for the Kubernetes-in-Docker mode. See ./kubernetes for the Kubernetes-in-Kubernetes mode. Requirements - One of the following host operating system: Host operating system Minimum version --------------------- --------------- Ubuntu (recommended) 22.04 Rocky Linux 9 AlmaLinux 9 Fedora (?) - One of the following c","default_branch":null,"files":null,"tree":[],"storefront":"/r/rootless-containers","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/rootless-containers/usernetes/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}