Lyt når som helst, hvor som helst

Dyk ned i over 1 million e- og lydbøger samt podcasts.

  • Over 1 million titler
  • Eksklusive titler + Mofibo Originals
  • Download og nyd titler offline
  • Opsig når som helst
Prøv nu
DK - Details page - Device banner - 894x1036
Cover for gVisor for Isolation: Sandboxed Containers Without Full VMs

gVisor for Isolation: Sandboxed Containers Without Full VMs

Sprog
Engelsk
Format
Kategori

Fakta

"gVisor for Isolation: Sandboxed Containers Without Full VMs"

Modern container platforms deliver speed and density, but their security story still hinges on a shared host kernel. This book is written for experienced engineers—security practitioners, platform and SRE teams, and advanced container users—who need a precise, operational understanding of where classic container isolation ends and where gVisor meaningfully changes the risk profile. It treats isolation as an engineering discipline: explicit boundaries, measurable attack-surface reduction, and production-grade practices rather than folklore.

You’ll build a rigorous model of namespaces, cgroups, and the shared-kernel threat, then learn how gVisor re-implements substantial Linux kernel behavior in userspace through the Sentry and mediates host interaction through the Gofer. The book drills into OCI integration via runsc, shows how to prove the sandbox is actually in use (and detect silent fallbacks), and provides troubleshooting frameworks for real Docker and Kubernetes deployments. It also equips you to choose between systrap, KVM, and ptrace with clear security/performance criteria, and to handle compatibility gaps with a repeatable triage strategy.

Expect deep coverage of threat modeling, hardening and policy enforcement, benchmarking methodology that avoids misleading comparisons, and operational playbooks that keep isolation enabled under incident pressure. Familiarity with Linux, containers, and Kubernetes/OCI tooling is assumed; the emphasis is on decision-quality understanding and production-ready executio

© 2026 NobleTrex Press (E-bog): 6610001180775

Udgivelsesdato

E-bog: 10. marts 2026

Tags

    Vælg dit abonnement

    • Over 1 million titler

    • Download og nyd titler offline

    • Eksklusive titler + Mofibo Originals

    • Børnevenligt miljø (Kids Mode)

    • Det er nemt at opsige når som helst

    Den mest populære

    Premium

    For dig som lytter og læser ofte.

    129 kr. /måned

    • Eksklusivt indhold hver uge

    • Fri lytning til podcasts

    • Ingen binding

    Start tilbuddet

    Unlimited

    For dig som lytter og læser ubegrænset.

    159 kr. /måned

    • Eksklusivt indhold hver uge

    • Fri lytning til podcasts

    • Ingen binding

    Prøv gratis

    Family

    For dig som ønsker at dele historier med familien.

    Fra 179 kr. /måned

    • Fri lytning til podcasts

    • Kun 39 kr. pr. ekstra konto

    • Ingen binding

    Dig + 1 familiemedlem2 konti

    179 kr. /måned

    Prøv gratis

    Flex

    For dig som vil prøve Mofibo.

    89 kr. /måned

    • Gem op til 100 ubrugte timer

    • Eksklusivt indhold hver uge

    • Fri lytning til podcasts

    • Ingen binding

    Prøv gratis