[lxc-users] Running unprotected system container

Andrey Repin anrdaemon at yandex.ru
Wed Jun 17 13:24:45 UTC 2020


Greetings, Koehler!

>  But I do not want kernel virtualization, not sure where you saw me ask for
> that, I want the exact opposite, I want the kernel to be share, meaning same
> kernel, same instance, with just layers on top, exactly as system containers do.

Then stop mentioning kernel modules loading. You can't load kernel modules, if
you don't drop to the kernel level.

>  It is unconventional to run a system container without any security and
> such, yet, as seen in the thread I am not alone, but very few.

Load kernel modules on the host and run your applications where they should
run.
Or use proper VM already.


-- 
With best regards,
Andrey Repin
Wednesday, June 17, 2020 16:23:01

Sorry for my terrible english...



More information about the lxc-users mailing list