• ftbd@feddit.org
    link
    fedilink
    English
    arrow-up
    2
    ·
    10 hours ago

    A docker container is not a whole separate Linux server, it uses the kernel running on the host

    • notfromhere@lemmy.ml
      link
      fedilink
      English
      arrow-up
      1
      ·
      10 hours ago

      With default runtime, very true. There are other runtimes that can be used that provide better isolation like gVisor, kata, firecracker, etc.