Skip to content

Latest commit

 

History

History
98 lines (74 loc) · 3.02 KB

20-os_virt_cons.md

File metadata and controls

98 lines (74 loc) · 3.02 KB
SPDX-FileCopyrightText SPDX-License-Identifier title author footer description keywords color class style
© 2023 Menacit AB <foss@menacit.se>
CC-BY-SA-4.0
Virtualisation course: OS-level virtualisation cons
Joel Rangsmo <joel@menacit.se>
© Course authors (CC BY-SA 4.0)
Downsides of using OS-level virtualisation compared to HW-level
virtualisation
vm
container
security
performance
economics
cons
negative
downsides
cost
infosec
secops
devops
#ffffff
invert
section.center { text-align: center; }

OS-level virtualisation

The downsides compared to hardware-level virtualisation

bg right:30%


Reliability

Live migration is wonky.

Kernel version may be different from what is expected by the guest.

Linux can behave... interestingly... when many different tasks are running.

Bugs triggered by guests could crash the host.

bg right:30%


Security

Gaps between the different isolation features.

Host exposes a huge attack surface to the guests.

Compatibility has been the priority, not security.

bg right:30%