add gvisor

This commit is contained in:
Wes Widner 2018-05-04 08:57:51 -04:00
parent 087fb50aa8
commit ff9c2967ec

View File

@ -8,7 +8,7 @@ A collection of container related security resources
* [**Build Management**](#build-management) * [**Build Management**](#build-management)
* [**Networking**](#networking) * [**Networking/Runtime**](#networking/runtime)
* [**Security profiles**](#security-profiles) * [**Security profiles**](#security-profiles)
@ -95,9 +95,12 @@ A collection of container related security resources
------------------------------------------------------------------------------------------ ------------------------------------------------------------------------------------------
## Networking ## Networking/Runtime
------------------------------------------------------------------------------------------ ------------------------------------------------------------------------------------------
### [gVisor](https://github.com/google/gvisor)
* User-space kernel designed to provide better isolation/sandboxing of containers
### [Cilium](https://github.com/cilium/cilium) ### [Cilium](https://github.com/cilium/cilium)
* Network policy enforcement based on eBPF * Network policy enforcement based on eBPF
* [Cilium - Container Security and Networking Using BPF and XDP - Thomas Graf, Covalent](https://www.youtube.com/watch?v=CcGtDMm1SJA) - Presentation of Cilium by its creator * [Cilium - Container Security and Networking Using BPF and XDP - Thomas Graf, Covalent](https://www.youtube.com/watch?v=CcGtDMm1SJA) - Presentation of Cilium by its creator