|
|
Subscribe / Log in / New account

IncludeOS: a unikernel for C++ applications

IncludeOS: a unikernel for C++ applications

Posted Jul 26, 2017 15:06 UTC (Wed) by Tara_Li (guest, #26706)
In reply to: IncludeOS: a unikernel for C++ applications by Sesse
Parent article: IncludeOS: a unikernel for C++ applications

The biggest advantage I see is the reduced attack surface. You can turn off services, you can block them from not connecting to the outside world - but if they're never compiled into existence in the first place, they *cannot* be turned back on, or unblocked. And if it were running on bare metal instead of in a VM, your responsiveness would likely be a lot more predictable.


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds