Firecracker v1.0 Released
github.com
github.com
Use case: starting a VM as fast as possible while maintaining the isolation that a VM (compared to a container) provides
One of the challenges I tried to build was one where a player would get access to the kernel commandline with the goal being that they should hack their way around the environment to get access to an encrypted disk. Unfortunately, that was when I get the now fixed bug[1].
[1] https://github.com/firecracker-microvm/firecracker/issues/27...
Thus if you don't need the emulation (and other extra features) from QEMU, it can be simpler to configure and certainly more secure to run.
For example I intend to run development VM's on Firecracker instead of QEMU.
I'm not sure this answers your questions exactly, there are good reasons to sometimes use a more faithful emulation of a real machine, but it's also sort of legacy for many of the cloud use cases like multi-tenant architectures, where VMs are mainly used to keep hard boundaries between customers.
Not too many of those :-)
I'll change the title to remove the `Show HN`.
P.S.: I'm not the author, nor am I involved with Firecracker; however given they've just released v1.0.0, and no-one shared it, I thought it would be worth pointing at it.
I, apparently wrongly, interpret this tag as "here is an interesting open-source project that seems to have been overlooked".
Perhaps it would be nice to have a new tag so one can easily discern between "just another article" and "an open-source project".
For example my main interaction with HN is to find new and interesting tools and projects, and such a tag would be very helpful for me.
Any thoughts? How should I tag such links in the future?
One does not necessarily tag such submissions. A link to the page with the title unedited (edited iff the title is inadequate or is a clickbiat), is more than enough.
If you must tag such submissions, Tell HN seems the best suited.