Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
sbrivio
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
sbrivio
7mo ago
passt has been doing something similar for years (see https://passt.top/kvm_forum_2022.pdf pages 17, 18) and it's actually pretty fast ( https://passt.top/#performance_1 ), even though it's not as r
2.
▲
by
sbrivio
4y ago
There are two port forwarding modes allowed with slirp4netns. One uses slirp4netns itself: data is passed across a tap device, libslirp translates the destination address and preserves the source address. The second one uses rootlesskitport
3.
▲
by
sbrivio
4y ago
See podman-network-create(1), I think the description of the --driver option should clarify this. You can use macvlan there, but in rootless operation you don't have access to the network interface of the hosts -- unless you set that u
4.
▲
by
sbrivio
4y ago
I have specifically not added that out of respect for what Slirp represented to dialup shell users in the late 1990s and for what it did for the ecosystem in the past 15 years. I used it for more than a decade myself, and if you consider th
5.
▲
by
sbrivio
4y ago
You might be right, but I hope you're not. :) I had a look at Winsock documentation a while ago, that doesn't look so bad in terms of what we need. See also: https://lore.kernel.org/qemu-devel/20220919232441.6
6.
▲
by
sbrivio
4y ago
On top of that, you usually want to isolate the container workload with an observable network abstraction instead of granting it full (albeit non-root) access to host network facilities (including sockets). See https://medium.com
7.
▲
Podman: Pasta User-Mode Networking
(github.com)
104 points
by
sbrivio
4y ago
|
26 comments
8.
▲
Mbuto – Host-agnostic initramfs image builder for lightweight virtual machines
(mbuto.sh)
3 points
by
sbrivio
4y ago
|
0 comments