Hacker News new | past | comments | ask | show | jobs | submit login

The isolation I am referencing is from the VM, not the container. Containers don't provide strong isolation, that is why the VM is required in this model.



The VM is an isolated environment itself. You do not need to be isolated from it.

Using two levels of userland isolation makes about the same sense as using 457 levels of userland isolation.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: