A network-isolated container in LXD

A network-isolated container in LXD? What good is it for?

  1. You can make it get network access through a proxy, likes SOCKS5. Therefore, it is good for security tasks when you want to fully control the traffic. Use with proxies like mitmproxy.
  2. A poor-man’s firewall. :slight_smile:
  3. Use as a tutorial to learn LXD proxy devices, TCP<->TCP. Follow the tutorial to create proxy devices that go both directions between the host and the container. Really, required reading on practicing TCP proxy devices.