Skip to content

Features

A complete toolkit for multi-tenant hosting security, fairness, and modern container workflows.

Filesystem

SimuzoFS — per-user jails

SimuzoFS creates an isolated filesystem view for each account so users cannot browse unrelated system paths or other tenants’ files. It combines jail scaffolding, PAM login hooks, and path restriction libraries.

  • PAM module for login-time jail setup
  • LD_PRELOAD path restrictions
  • Persistent per-user volumes for filtered passwd/group and logs
  • CLI enable/disable and full reinit tooling
SimuzoFS details
Simuzo Users page — enable SimuzoFS isolation per account
Simuzo resource limit packages
cGroups v2

Resource limits that stick

Define packages for CPU quota, memory high/max, IO bandwidth, IOPS, PIDs, and entry processes. Assign defaults, plan packages, or per-user overrides.

  • CPU, memory, IO, IOPS, tasks, entry processes
  • Separate database cgroup tracking where governor is used
  • Process assignment via simuzo-procmon
  • CLI reload for fleet-wide updates
Limits details
Podman

Rootless Container Manager

Give customers containers without host root. Compose stacks, catalog templates, volumes, registries, port allocation, and domain reverse proxies are built for shared hosting realities.

  • Manage containers: start, stop, logs, stats, exec
  • Compose projects for multi-service apps
  • App catalog templates
  • Host port pool + domain/path proxies
Container Manager
Simuzo Container Manager interface
MySQL Governor monitoring dashboard
MySQL / MariaDB

MySQL Governor

Map MySQL users and databases to system accounts, monitor live threads, and throttle abusers so long-running queries cannot monopolize the database.

  • Live monitoring of connections and queries
  • Rebuildable database map (dbmap)
  • Service-based daemon with CLI tools
  • Admin UI for status and maps
Governor details
Security

Hardening for multi-tenant servers

SecureLinks

Kernel module that enforces symlink-if-owner policy so unprivileged users cannot follow foreign symlinks to sensitive targets.

Audit trail

Record security-relevant actions for compliance review, with retention controls and a dedicated audit service.

Process monitoring

simuzo-procmon keeps processes in the right cgroups and supports operational control of runaway workloads.

Security overview

Operations

Admin tools that scale with your fleet

Statistics

Current usage, history, faults, and top consumers for capacity planning.

Services manager

Start, stop, enable, and monitor Simuzo systemd units from the UI.

Tasks & logs

Background task progress for installs/enables, plus debug log views.

API keys

Scoped credentials for automation with optional IP allow lists.

Rebranding

Site name, logo, favicon, and footer branding for white-label panels.

CLI

First-class simuzo and simuzofs commands for automation and recovery.

End-user experience

Self-service visibility and containers

When enabled, end users see their own limits and live consumption, inspect processes, and operate containers without host root access.

  • Dashboard with resource summary
  • Resource usage history
  • Process list and entry-process awareness
  • Full Container Manager suite
End-user resource usage charts
FAQ

Common questions

Can I enable features selectively?

Yes. Admins can enable SimuzoFS, MySQL Governor, Container Manager (Podman), statistics collection, and audit logging independently from Settings, then apply isolation and limits per user.

Do end users get a separate panel?

Simuzo provides end-user pages for resource usage, processes, and Container Manager when enabled. Access is integrated with your hosting panel’s end-user area.

Ready to secure your hosting nodes?

Install Simuzo on your panel server, enable isolation and limits, and give users a safer multi-tenant environment.

Product news, security improvements, and release notes for hosting providers.