Hacker News new | past | comments | ask | show | jobs | submit login

Also, unikernels move in this direction. If you just run one program per VM, virtual memory doesn't gain you much security.



IncludeOS especially.

> One service pr. VM means no need for virtual address spaces, and no overhead due to address translation. Everything happens in a single, ring 0 address space.




Consider applying for YC's W25 batch! Applications are open till Nov 12.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: