Recent comments on posts in the blog:
sorry to spam your comments, but for the past year or so I have been working on a project called subuser which does this but with Docker containers rather than separate users.
Hi, Nat. I am also using "exec startx" and was still having trouble with console/policy kit and NetworkManager authorization. It turns out this Debian bug report helped me solve the problem:
I hadn't read about xpra before this, and it might be exactly the tool I'm looking for. I have been following a Linux distro called Qubes OS for a couple of years and while I like the strong privilege separation it provides it's far from ready for prime time.
Fast forward to 2014, where tools like lxc, or Docker are readily available and networking utilities like Open vSwitch and I think we can really do some magic.