Hypervisor for multi-tenant computing, like it should be
kwarantine.xyz
kwarantine.xyz
I don't think there's much of a market for a new closed-source, patent-encumbered hypervisor for Linux...
And, perhaps obviously, I personally would never use such a thing.
It's also a little tricky to get my head around how you're simultaneously winning on I/O performance by not virtualizing it, and also shielding me from host kernel vulnerabilities. Some of that I/O overhead you're talking about is spent in the service of putting a security boundary between my guests and my host.
I've done some fair share of evaluating firecracker for https://github.com/combust-labs/firebuild and the need to provision is red herring. firebuild can run a VM directly from a Dockerfile and Docker image. Fly.io team does something similar. It's basically a fully functional app out of the container within a matter of milliseconds.
What would be nice is to see a direct comparison between your solution and firecracker.
I hesitated to chime in with specifics because I haven't done any real work on timing and profiling and because my dev environment is a NUC which, while zippy, is not the state of the art execution environment for Firecracker.
But, long story short: I restart test Firecrackers constantly, from shell scripts, and from start to my Go application logging its first "I'm listening" message after its VM has fully initialized, it's essentially instantaneous.
I'm sure it could be made faster, but making it faster would in no meaningful way change my life.
Instances on Fly can take a second or two to come up, but that's orchestration overhead, not Firecracker (Fly is zippy, too, don't get me wrong.)
Love your work by the way.