Containers

By The Power of toolbox!

D.containers
Dario Faggioli
Immutable OSes are great, but not being able to --for instance-- install new distribution packages (or having to reboot every time you do so) may be really tedious, especially for developers. Except, you can install whatever you want without having to reboot, and without breaking the consistency and "the immutability" of the OS itself either. How? Well, in one word, with toolbox. In some more words: come to the talk.
So, let's say that your driver is an immutable OS, like Fedora Silverblue, openSUSE MicroOS, EndlessOS, etc. And let's say you are a power user and/or a developer. So, how do you perform your daily tasks, and how do you do your development on such a system, where you cannot install the compiler for the language you're writing the code in? Why, you ask? Well, because immutable OSes are often cleaner, more consistent, more reliable, and a lot harder to break than traditional ones. But that comes at the price of (for instance, on Silverblue and MicroOS) having to reboot several times a day, which is often a showstopper. Unless we leverage containers in order to provide users with a read-write environment that can be easily spawned, and inside which they can "live" and do most of their work (especially if they're doing any development!). This is usually done with something called "toolbox". In fact, Fedora Silverblue has a toolbox. openSUSE MicroOS has a toolbox, which is similar but also different from Silverblue's one. But that's not all of it, e.g., someone came up with podbox and someone else with coretoolbox. This talk will show the reasons why having some kind of toolbox is absolutely necessary inside an immutable OS. We will also try to explain the differences between some of the existing approaches and their implementations. And, last but not least, we will showcase --through real-life examples-- how, by taking advantage of a toolbox, you can elect an immutable OS to be the daily driver of your main development workstation, and not have to reboot it (unless you actually want to!)

Additional information

Type devroom

More sessions

2/7/21
Containers
Daniel Borkmann
D.containers
BPF is becoming ubiquitous in today's modern container environments and thanks to the fast pace of innovations from Linux kernel developers in the BPF subsystem, cloud native networking software such as Cilium is able to bring these extensions to a mainstream user base for improving throughput, latency and reliability of workloads and services. This talk provides a deep dive on recently added BPF kernel as well as Cilium extensions for Kubernetes environments which significantly reduce ...
2/7/21
Containers
Jakub Dżon
D.containers
Operator SDK is a solid foundation for building robust applications for Kubernetes; one of such applications is the VM import operator (https://github.com/kubevirt/vm-import-operator) allowing Kubernetes administrators to easily import their oVirt-managed virtual machines to KubeVirt. In this talk, the speaker will show how his team used Operator SDK to build the VM import operator and how that operator can be used.
2/7/21
Containers
Viktor Farcic
D.containers
What are we going to do without Docker inside Kubernetes clusters?
2/7/21
Containers
Vlad Bogolin
D.containers
Containers are a central point for the MariaDB buildbot (buildbot.mariadb.org). In fact, almost all our builds run in Docker containers. In this short presentation, I will talk about the container environment used in order to build MariaDB from source both on Linux and Windows. Then, I will present some of the challenges associated with running Windows in a Docker container and finally I will focus on some of the advantages of having a container based continuous integration infrastructure.
2/7/21
Containers
Christian Brauner
D.containers
On most POSIX systems including Linux file ownership can only be changed globally, i.e. for all users through the chown*() syscall family. In this talk we will introduce idmapped mounts. Idmapped mounts allow to change the ownership of files under the mounts they appear in.
2/7/21
Containers
Peter Zaitsev
D.containers
DBaaS is the fastest growing way to deploy databases. It is fast and convenient and it helps to reduce toil a lot, yet it is typically done using proprietary software and tightly coupled to the cloud vendor. We believe Kubernetes finally allows us to build fully OpenSource DBaaS Solution capable to be deployed anywhere Kubernetes runs - on the Public Cloud or in your private data center. In this presentation, we will describe the most important user requirements and typical problems you would ...
2/7/21
Containers
Marco Mancini
D.containers
Although Kubernetes is the leading container orchestration solution, it does not necessarily solve all container management-related challenges that one might face. Leaving fashions aside, some other technologies may actually be a better solution for some use cases and projects. Kubernetes is actually a very complex technology, with limited support for multi-tenancy and lacking secure isolation between tenants. Kubernetes does not offer cloud-like self-service provision features for users either. ...