[ale] Speaking of containers: Docker and iptables

Scott Plante splante at insightsys.com
Tue Oct 31 13:08:20 EDT 2017


Isn't that true for chroot jails too though? That is a process in a chroot jail is visible in the host process table, right? Anyway, the point is that the host processes aren't visible in the container, not the other way around. 



----- Original Message -----

From: "Jim Kinney" <jim.kinney at gmail.com> 
To: "Atlanta Linux Enthusiasts" <ale at ale.org>, "DJ-Pfulio" <djpfulio at jdpfu.com>, ale at ale.org 
Sent: Tuesday, October 31, 2017 1:04:02 PM 
Subject: Re: [ale] Speaking of containers: Docker and iptables 

Containers are like a chroot jail with widely spaced bars and doors locked with chewing gum. 

A process running in a vm is not visible in the host process table. It is for a container. 


On October 31, 2017 12:51:23 PM EDT, DJ-Pfulio <djpfulio at jdpfu.com> wrote: 

On 10/31/2017 10:21 AM, Lightner, Jeffrey wrote: 

<blockquote>
Question that just occurred to me: 
Would one classify the base OS (not the individual containers) as a hypervisor 
or is there a better term for it? 



No. I wouldn't call it a hypervisor. 

Containers are NOT virtual machines.  They are more like BSD-Jails. 


Ale mailing list 
Ale at ale.org 
http://mail.ale.org/mailman/listinfo/ale 
See JOBS, ANNOUNCE and SCHOOLS lists at 
http://mail.ale.org/mailman/listinfo 

</blockquote>

-- 
Sent from my Android device with K-9 Mail. All tyopes are thumb related and reflect authenticity. 
_______________________________________________ 
Ale mailing list 
Ale at ale.org 
http://mail.ale.org/mailman/listinfo/ale 
See JOBS, ANNOUNCE and SCHOOLS lists at 
http://mail.ale.org/mailman/listinfo 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.ale.org/pipermail/ale/attachments/20171031/199140d7/attachment.html>


More information about the Ale mailing list