Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Send in the Chown - Systemd Containers in User Namespaces

linux.conf.au via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This talk explains how Linux kernel and Kubernetes security features can support systemd-based workloads in containers. It covers namespaces, cgroups, container runtime behavior, and configuration for Kubernetes and OpenShift.

Syllabus

Intro
Preliminaries
What is a container?
Containers on linux
Container standards
OCI Runtime Specification
Kubernetes - container orchestration
Kubernetes - terminology
Kubernetes - Pod definition
OpenShift - terminology
OpenShift runtime environment (today)
FreelPA on Kubernetes/OpenShift - use cases
Runtime user namespaces
Runtime - user namespaces - Kubernetes support
Runtime - OCI cgroup ownership semantics
Runtime - cluster configuration (OCP 4.10) - 3/3
Status and future

Taught by

linux.conf.au

Reviews

Start your review of Send in the Chown - Systemd Containers in User Namespaces

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.