Re: A practical and compelling distributed cap platform: Sandstorm on Cap'n Proto
"Rob Meijer" <rmeijer-qWit8jRvyhVmR6Xm/[email protected]>
| Newsgroups | gmane.comp.capabilities.general |
|---|---|
| Message-ID | <[email protected]> |
On Tue, August 5, 2014 11:50, Kenton Varda wrote: > On Tue, Aug 5, 2014 at 2:33 AM, Thomas Leonard <[email protected]> wrote: > >> As a regular Xen host, you should be able to run any normal Linux >> guest alongside the unikernels. > > > Yes. Of course, that's considerably heavier than a Linux container. > > >> Presumably, sandstorm could itself be >> one of the guest VMs. >> > > Indeed. > > In the long run, I hope that people will start writing Sandstorm apps in > an > object-capability language, at which point the need for Linux containers > for sandboxing goes away and multiple users can even be served from the > same process, making things even more efficient. Hmm, why not go for a layered defence? The TCB for ocap language runtimes is still uncomfortably large IMO. > At that point it may make > a lot of sense to further transition to running more directly on top of > Nymote, getting rid of the legacy Linux kernel entirely. > > It's a long road, though. > > -Kenton > _______________________________________________ > cap-talk mailing list > [email protected] > http://www.eros-os.org/mailman/listinfo/cap-talk >