Skip to content
This repository has been archived by the owner on Jan 25, 2022. It is now read-only.

Latest commit

 

History

History
23 lines (20 loc) · 966 Bytes

glossary.md

File metadata and controls

23 lines (20 loc) · 966 Bytes

glossary

concepts

  • container: a collection of namespaces, designed to fully isolate a process or set of processes
  • handle: short name for a container, typically the last part of a filesystem path
  • namespace: a Linux kernel feature that isolates processes's view of a particular type of feature e.g. a process in a "network namespace" sees different network resources than other processes (ref)
  • vxlan: an implementation of an overlay network which encapsulates ethernet frames inside UDP packets the Linux kernel has vxlan support
  • oci: the Open Container Initiative, an evolving standard that Docker, Rocket, and Guardian are coding against
  • cni: the Container Network Interface

tools

  • ip
    • ip netns list
    • ip netns exec
  • bridge
    • bridge fdb
  • iptables
  • ifconfig
  • runc: a reference implementation of the oci spec; a CLI for creating containers