MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
containers
Recherche

[$] Containers and address space separation

mercredi 1 mai 2019, 21:30 , par LWN.net
James Bottomley began his talk at the 2019 Linux Storage, Filesystem, and
Memory-Management Summit (LSFMM) by noting that the main opposition to his ideas
was not present at the summit, which was likely to mean the ideas got a much
easier reception than they would have otherwise. In particular, Peter
Zijlstra and Ingo Molnar expressed some strong reservations to the work
that Bottomley's colleague Mike Rapoport posted
recently; none of those three were in attendance at LSFMM. The idea is to
use address spaces to reduce the attack surface available to virtual
machines (VMs) and containers such that kernel bugs of various sorts have
less reach on multi-tenant systems.
https://lwn.net/Articles/787166/rss
News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Date Actuelle
jeu. 25 avril - 16:12 CEST