[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Bug#672695: wordpress: no sane way for security updates in stable releases



On Mon, May 14, 2012 at 03:53:25PM +0100, Ben Hutchings wrote:
> On Mon, May 14, 2012 at 04:23:27PM +0200, Adam Borowski wrote:
> > This reminds me: is anyone going to bring back vserver or openvz in some
> > form?
> Ola Lundqvist <ola@inguza.com> had plans to do this in an
> OpenVZ-hosted repository.

Sounds good...

> > Otherwise, wheezy would end up with no containers.  Xen does kernel
> > virtualization and thus takes an order of magnitude more memory, lxc is not
> > supposed to be secure (it provides a chroot with usage limits, but no
> > isolation).
> User IDs and capabilities aren't yet properly namespaced.  So you
> can't create a container-root user to manage the container from the
> inside, and you can't rent out a container as a VPS.

But that's a major application of this technology.

> That doesn't mean we have 'no containers'.

But in practice, it means that many users have to migrate, or abstain
from upgrading. Or will lxc be completely ready for Wheezy?


Kind regards,
--Toni++


Reply to: