Re: Docker
- In reply to: Mario Marietto : "Re: Docker"
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Thu, 13 Apr 2023 13:22:40 UTC
On Thu, 13 Apr 2023 13:31:02 +0200 Mario Marietto <marietto2008@gmail.com> wrote: > The point of my argumentation is not if FreeBSD has or not good tools for > containerizing and securing applications. It has. Point is that the users > that don't know FreeBSD are tied to their own tools and rarely want to > change them. Almost everyone wants to change. But trying,experimenting and > changing something in the workflow is important,because every tool has bad > and good sides. There are many docker images already to be used on the net > and this will save a lot of time and effort and money for a lot of people. The problem with using the docker images available online is that these are *linux* filesystem overlay images. Docker only provides the mechanism for creating and assembling those images into runtime environments. The business of running them is handled by LXC via containerd. So in order to achieve what you want there would need to be: 1: Support for jails in containerd or support for LXC on FreeBSD. 2: Support for a *lot* more of the up to date Linux system calls (current emulation is for a 4.4.0 kernel. 3: Support for the filesystem layering used by Docker. 4: (the easy bit) A port of docker. This comes up a lot - but nobody ever wants to do the work which is why it never happens. It appears that none of the FreeBSD developers want this (fair enough they have other things on their minds and FreeBSD is a volunteer effort), and that none of the people who want this care enough to step up and do the work or raise a fund to pay someone to do it. -- Steve O'Hara-Smith <steve@sohara.org>