Hacker News
new
past
comments
ask
show
jobs
points
by
_pdp_
6 hours ago
|
comments
by
pploug
5 hours ago
|
next
[-]
Docker sandboxes uses a MicroVM as an additional isolation layer - its not just containers (as also mentioned in the nanoclaw post)
reply
by
verdverm
4 hours ago
|
parent
|
[-]
This still does not help with, you can call foo, but not bar. We have plenty of existing tooling for that too.
reply
by
itigges22
2 hours ago
|
prev
|
[-]
[flagged]
reply