SPDX-FileCopyrightText | SPDX-License-Identifier | title | author | footer | description | keywords | color | class | style | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
© 2023 Menacit AB <foss@menacit.se> |
CC-BY-SA-4.0 |
Virtualisation course: OS-level virtualisation cons |
Joel Rangsmo <joel@menacit.se> |
© Course authors (CC BY-SA 4.0) |
Downsides of using OS-level virtualisation compared to HW-level |
|
#ffffff |
|
section.center {
text-align: center;
}
|
Live migration is wonky.
Kernel version may be different from what is expected by the guest.
Linux can behave... interestingly... when many different tasks are running.
Bugs triggered by guests could crash the host.
Gaps between the different isolation features.
Host exposes a huge attack surface to the guests.
Compatibility has been the priority, not security.