Whats the state of lightweight VMs? Can they replace containers yet?
Not sharing the kernel with the host os (or other containers) is a huge security boundary.
Not sharing the kernel with the host os (or other containers) is a huge security boundary.
A bit of debootstrap, a few apt-get commands, and copying in config files, and you have a lightweight VM, minimal image.
Something people have been doing for 20 years.
There are also sorts of tricks, such as having two images, one for the app layer, one for the OS, which makes the deploy for app updates faster.
I'm not even sure why people care about image size all that much. You copy it to your local cluster, then deploy from there.