Why Zones?
‣ Kernel-level virtualization
‣ Integrated with other Solaris/illumos technologies
zfs, dtrace, crossbow
‣ Can't break out of a zone*
There are other container technologies, why zones?
* at least, I haven't found a reference to it being possible
Tuesday, August 20, 13
If you know of research, blog posts, papers, or anything that proves
that one can break out of a non-global zone into the global zone, I'd
love to hear it.
I've heard that it is possible to break out of KVM, Xen, LXC, Jails, but I
also don't have references handy. Please email me,
[email protected] if you have any.