| ▲ | selkin 5 hours ago | |
Not sure if it's intended, but Apple Container is a microvm, providing mich better isolation than containers (while retaining the familiar interface) | ||
| ▲ | TheDong 2 hours ago | parent [-] | |
"much better isolation than containers" If you've got an exploit for docker / linux containers, please share it with the class. What I'm saying is that in practice, containers and VMs have both been quite secure. Also, you can configure docker to run microvms too https://github.com/firecracker-microvm/firecracker-container... | ||