gVisor Container Isolation with Michael Pratt and Yoshi Tamura

gVisor Container Isolation with Michael Pratt and Yoshi Tamura

Released Wednesday, 10th July 2019
Good episode? Give it some love!
gVisor Container Isolation with Michael Pratt and Yoshi Tamura

gVisor Container Isolation with Michael Pratt and Yoshi Tamura

gVisor Container Isolation with Michael Pratt and Yoshi Tamura

gVisor Container Isolation with Michael Pratt and Yoshi Tamura

Wednesday, 10th July 2019
Good episode? Give it some love!
Rate Episode
List

image

Software applications running within a host operating system need to be isolated. Isolation prevents security vulnerabilities, such as one application accessing the memory of another.

In modern cloud environments, a single physical host might be running multiple virtual machines on top of a hypervisor. Those virtual machines might be divided up into containers. The different virtual machines and containers might be operated by different users, or even different companies.

gVisor is a container sandbox runtime open sourced by Google. gVisor runs containers in a new user-space kernel, and provides a container security system with low overhead. gVisor improves on the previous security properties of containers.

Michael Pratt and Yoshi Tamura work on gVisor at Google, and they join the show to talk through the purpose of gVisor and the engineering around the project.

 ANNOUNCEMENTS

The post gVisor Container Isolation with Michael Pratt and Yoshi Tamura appeared first on Software Engineering Daily.

Show More
Rate
List

Join Podchaser to...

  • Rate podcasts and episodes
  • Follow podcasts and creators
  • Create podcast and episode lists
  • & much more
Do you host or manage this podcast?
Claim and edit this page to your liking.
,