What is sVirt and How Does it Isolate Linux Containers?

By on Jul 10, 2018 in Article

Background What is sVirt and, why does it matter for your containers? The short answer is, because sVirt is another layer of security and defense in depth is a good approach to security. The longer answer is, sVirt dynamically generates an SELinux label for every single one of your containers, which makes them less likely to be able to break into each other, break...

Containers Don’t Run on Docker

By on Jun 6, 2018 in Article

Background I’m here to tell you that somebody on the Internet is wrong! Actually, many people. If you have ever consulted Google for the words “Docker Architecture” you may have found a drawing that implies that Docker is some sort of blue box which sits on top of an operating system and runs containers. That makes sense right? Wrong! Containers don’t run on Docker...

