kata-irc-bot | <torque_wrexer> a question, and maybe out of scope, but do unprivileged containers offer comparable isolation to VMs? | 02:02 |
---|---|---|
kata-irc-bot | <eric.ernst> It’s a spectrum. I’d say no, but there are many options w containers. | 02:06 |
kata-irc-bot | <eric.ernst> In our case, it isn’t just VM v Container, since we are adding a layer of isolation, not replacing. | 02:07 |
kata-irc-bot | <eric.ernst> Ie, one layer is Linux kernel in the guest (namespaces, seccomp, cgroups, selinux, etc) and the hypervisor interface. | 02:08 |
kata-irc-bot | <torque_wrexer> ok. so if i understand, what kata offers is a bare-metal(?) hypervisor, in which is the hypervisor int which also furcates to multiple containers? with their own hyperviser isolation?? | 02:15 |
kata-irc-bot | <torque_wrexer> just to approximate i guess | 02:20 |
kata-irc-bot | <raravena80> the hypervisor is kvm which runs on top Linux | 02:50 |
kata-irc-bot | <torque_wrexer> i guess what i'm really getting at is, does kata offer me the advantage to only allocate and initiate my server 2 by maas/pxe and not maas commission it, but instead allow kata to commission it with its structure hence allowing me to implement k8s on bare metal? | 02:51 |
kata-irc-bot | <raravena80> offer and advantage: not really, kata is independent from maas. You can provision with maas or whatever you want... and you can use Kata on bare-metal. So Kata would be compatible with provisioned servers with maas but maas is not a requirement. | 02:56 |
kata-irc-bot | <torque_wrexer> gotcha. | 03:15 |
kata-irc-bot | <torque_wrexer> thanks for your advice guys :slightly_smiling_face: | 03:16 |
*** sameo has joined #kata-general | 06:54 | |
*** sameo has quit IRC | 07:04 | |
*** LinuxMe has joined #kata-general | 07:30 | |
*** LinuxMe has quit IRC | 07:37 | |
*** lpetrut has joined #kata-general | 07:55 | |
*** sameo has joined #kata-general | 09:17 | |
*** LinuxMe has joined #kata-general | 09:33 | |
*** LinuxMe has quit IRC | 09:38 | |
*** gwhaley has joined #kata-general | 09:39 | |
*** stackedsax has quit IRC | 13:04 | |
*** LinuxMe has joined #kata-general | 14:16 | |
*** simosx has joined #kata-general | 14:19 | |
*** LinuxMe has quit IRC | 14:20 | |
*** lpetrut has quit IRC | 15:37 | |
*** simosx has quit IRC | 15:37 | |
*** gwhaley has quit IRC | 17:59 | |
*** lpetrut has joined #kata-general | 18:33 | |
*** lpetrut has quit IRC | 18:37 | |
*** lcastell has joined #kata-general | 19:44 | |
*** stackedsax has joined #kata-general | 22:53 |
Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!