Rocket wants to hardware isolation leading container market, Docker said, “no! ”

Next generation CoreOS containers using Intel-based hardware isolation to increase security. Other container systems also replicated? Michael Kors iphone 5 cases

Michael Kors iPhone 5 Case Strips Black White

Editor’s Note: CoreOS is a lightweight operating systems based on the Linux kernel, born to infrastructure construction of high performance computer clusters. Docker is an open source application for vessel engines, Docker to architecture and deploy cloud servers, makes it convenient to our program.

Now that the Open Container Initiative (OCI) promise to make all the containers are the same, but in addition to the Docker, stopped development of other container technology now? The answer is no. CoreOS, for example, it is accelerating.

CoreOS, Docker many idea, build another Rocket container system. Has been highly publicized in a safe and easy to advertise your own container attributes, Rocket 0.8 (also known as RKT) brought Intel design characteristics, CoreOS claims that haven’t been found in the other containers.

Clear Containers of Rocket 0.8 using the Intel project, it use the VT-x directive in the Intel chip set hardware isolation for the container. In fact, Intel Rocket to build a proof of concept project, current work is the cooperation of CoreOS, and Intel. A container in the Rocket 0.8 implementation according to the level of the whole process are encapsulated in a KVM, which means that the contents of the container by a firewall from a host isolation.

So many isolated sounds like too much, but this is the sustained attention of vessel safety. Most containers claiming to offer containers in the environment technology, namespaces and cgroups isolation. In a multi-tenant environment, isolation is essential. Michael Kors iphone 5 cases

The big question is:, Rocket’ new features are used by OCI. According to CoreOS CTO Brandon Philips said by CoreOS offers the first APPC container specification covers container-managed four different elements: packaging, and signing, and naming (sharing the container with others) and runtime …

“The current focus of OCI runtime. Although the effort was coordinated with the OCI by APPC, but he expressed hope that the OCI rules should provide users with a complete container image story. ”

CoreOS wanted to do leader Docker also provide Philips outlined some of the features. Such as Docker Docker Content Trust recently released, a Docker container design and signature verification mechanisms. By using Content Trust as an alternative mechanism to verify that the content is added to the official Docker Registry, and offer it as an open source standard, Docker hopes to set an example to encourage the adoption of.

Editor’s Note: this article translated by the speed of cloud software engineer Ding Qiwei Viainfoworld

10 votes

Lightning Ethernet Cable Internet cable

Lightning Ethernet Cable mobile Internet data lines are transformed into the ordinary USB Ethernet adapter, one is stuck iPhone Lighiting interface, while the other end is the network cable plug, and through Apple’s MFi certification.

View details of the voting >>

Leave a comment