From owner-freebsd-questions@freebsd.org Tue Mar 17 09:35:10 2020 Return-Path: Delivered-To: freebsd-questions@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id CF39F26046B for ; Tue, 17 Mar 2020 09:35:10 +0000 (UTC) (envelope-from SRS0=XYX3=5C=perdition.city=julien@bebif.be) Received: from orval.bbpf.belspo.be (orval.bbpf.belspo.be [193.191.208.90]) by mx1.freebsd.org (Postfix) with ESMTP id 48hSgx093Wz4cmr for ; Tue, 17 Mar 2020 09:35:08 +0000 (UTC) (envelope-from SRS0=XYX3=5C=perdition.city=julien@bebif.be) Received: from x1 (unknown [77.109.101.182]) by orval.bbpf.belspo.be (Postfix) with ESMTPSA id CD5551D4FC19; Tue, 17 Mar 2020 10:35:07 +0100 (CET) Date: Tue, 17 Mar 2020 10:35:06 +0100 From: Julien Cigar To: Victor Sudakov Cc: freebsd-questions@freebsd.org Subject: Re: Technological advantages over Linux Message-ID: <20200317093506.GC1183@x1> References: <8a9a33b3-4eb1-419c-a9e3-fca4db430619@www.fastmail.com> <20200217194207.rxmcomsn4jvmoc7c@sea-ll-10936> <20200317052943.GE19098@admin.sibptus.ru> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline In-Reply-To: <20200317052943.GE19098@admin.sibptus.ru> X-Rspamd-Queue-Id: 48hSgx093Wz4cmr X-Spamd-Bar: ---- Authentication-Results: mx1.freebsd.org; dkim=none; dmarc=none; spf=pass (mx1.freebsd.org: domain of SRS0=XYX3=5C=perdition.city=julien@bebif.be designates 193.191.208.90 as permitted sender) smtp.mailfrom=SRS0=XYX3=5C=perdition.city=julien@bebif.be X-Spamd-Result: default: False [-4.08 / 15.00]; ARC_NA(0.00)[]; RCVD_VIA_SMTP_AUTH(0.00)[]; NEURAL_HAM_MEDIUM(-0.65)[-0.646,0]; FROM_HAS_DN(0.00)[]; TO_DN_SOME(0.00)[]; R_SPF_ALLOW(-0.20)[+mx:c]; NEURAL_HAM_LONG(-1.00)[-1.000,0]; MIME_GOOD(-0.10)[text/plain]; DMARC_NA(0.00)[perdition.city]; TO_MATCH_ENVRCPT_SOME(0.00)[]; RCPT_COUNT_TWO(0.00)[2]; RCVD_IN_DNSWL_NONE(0.00)[90.208.191.193.list.dnswl.org : 127.0.10.0]; IP_SCORE(-3.04)[ip: (-9.01), ipnet: 193.191.192.0/19(-4.50), asn: 2611(-1.65), country: BE(-0.02)]; FORGED_SENDER(0.30)[julien@perdition.city,SRS0=XYX3=5C=perdition.city=julien@bebif.be]; RCVD_NO_TLS_LAST(0.10)[]; MIME_TRACE(0.00)[0:+]; R_DKIM_NA(0.00)[]; ASN(0.00)[asn:2611, ipnet:193.191.192.0/19, country:BE]; MID_RHS_NOT_FQDN(0.50)[]; FROM_NEQ_ENVFROM(0.00)[julien@perdition.city,SRS0=XYX3=5C=perdition.city=julien@bebif.be]; RCVD_COUNT_TWO(0.00)[2] X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 17 Mar 2020 09:35:11 -0000 On Tue, Mar 17, 2020 at 12:29:43PM +0700, Victor Sudakov wrote: > Ihor Antonov wrote: > > [dd] > > > > > Basically docker "image" is just collection of layers. > > When you work on the dockerfile and > > rebuild it regularly - you don't want to rebuild parts that have not > > changed. And so docker came up with the idea of image layers. Each > > command in Dockerfile creates a layer. And if you did not touch that > > specific line in dockerfile - layer will be re-used > > When you are finished - your "image" is just a resulting set of layers. > > (overly simplified, but the gist of it) > > This is what the current FreeBSD jail system is lacking. At best, jail > management systems like ezjail offer two layers: the base jail and the > overlay jail. the problem with ezjail is that all your jails need to be the same version. The biggest advantage of using full (thick) jail is that you have fully independent ZFS dataset (or ..) that you can replicate (hot spares) > > This is AFAIK. If someone is better informed please correct me. > > -- > Victor Sudakov, VAS4-RIPE, VAS47-RIPN > 2:5005/49@fidonet http://vas.tomsk.ru/ -- Julien Cigar Belgian Biodiversity Platform (http://www.biodiversity.be) PGP fingerprint: EEF9 F697 4B68 D275 7B11 6A25 B2BB 3710 A204 23C0 No trees were killed in the creation of this message. However, many electrons were terribly inconvenienced.