YoVDO

Nabla Containers - A New Approach to Container Isolation

Offered By: CNCF [Cloud Native Computing Foundation] via YouTube

Tags

Conference Talks Courses Cloud Computing Courses Cloud Security Courses Kata Containers Courses gVisor Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore a conference talk on Nabla Containers, a novel approach to container isolation presented by Brandon Lum and Ricardo Koller from IBM. Delve into the security concerns surrounding horizontal attacks in cloud environments and learn how Nabla Containers address these issues by leveraging library OS/unikernel techniques to reduce the attack surface on host kernels. Discover how this innovative solution allows popular applications like Node.js, Python, and Redis to run with only 9 syscalls via seccomp. Compare Nabla Containers' isolation and performance metrics against other technologies such as gVisor and Kata Containers. Gain insights into how this technology could potentially revolutionize container security and isolation in container-native cloud environments.

Syllabus

Nabla Containers: A New Approach to Container Isolation - Brandon Lum & Ricardo Koller, IBM


Taught by

CNCF [Cloud Native Computing Foundation]

Related Courses

Evolution of a Platform as a Service from the Inside
Devoxx via YouTube
From Secure Container to Secure Service
Linux Foundation via YouTube
Running Untrusted Code with gVisor - Container Security and Sandboxing
Linux Foundation via YouTube
Security in the Cloud with Falco - Overview and Project Updates
CNCF [Cloud Native Computing Foundation] via YouTube
gVisor and Falco - Strengthening Kubernetes and Container Security with Visibility
CNCF [Cloud Native Computing Foundation] via YouTube