2024/06/05ã«è¡ããããOCHaCafe Season8 #5 - Kubernetesã§ä½ãIaaSåºç¤ã§ç¨ããè³æã§ãã commpass: https://ochacafe.connpass.com/event/316645/
2024/06/05ã«è¡ããããOCHaCafe Season8 #5 - Kubernetesã§ä½ãIaaSåºç¤ã§ç¨ããè³æã§ãã commpass: https://ochacafe.connpass.com/event/316645/
ç« ç«ã¦ ã¯ããã« Dockerã»Containeråä»®æ³åã¨ã¯ Dockerä¸å¼·æ代çµçã®å ã Containeræè¡é¢é£å² æ§ã ãªContainer Runtime ãããã« 1. ã¯ããã« Containerã使ããªãDockerãã¨ãã常èãå´©ãã¤ã¤ããã軽éãªä»®æ³ç°å¢ã§ããContainerã¯ãéçºãããªãªã¼ã¹å¾ããã§ã«æ¬ ãããªããã¼ã«ã§ãããããã¨ã³ã¸ãã¢ã¯é¿ãã¦éããªããContainerå®è¡ãã¼ã«ï¼Container Runtimeï¼ã¨ãã¦æããããã®ãã»ã¼Dockerä¸æã§ãããããã§ååã¨æããã¦ããã®ã ããDockerã®èå¼±æ§ãæ¶è²»ãªã½ã¼ã¹ãªã©ã®åé¡ãKubernetesï¼K8sï¼ã®ç»å ´ã«ããå½±é¿ãcontainerdãcri-oçã®ä»ã®Container Runtimeã®ç»å ´ã«ããç¶æ³ãåçã«å¤åãã¦ãããæ¬è¨äºã§ã¯ãããããContainerãå©ç¨ããã人ãå度æ å ±
Linuxã³ã³ãããFreeBSDã§åãããLinux containers on FreeBSDããcontainerd 1.7.0ã§æ£å¼ãµãã¼ã ã³ã³ããã©ã³ã¿ã¤ã ã®ãã£ã¨ã代表çãªå®è£ ã¨ãã¦Cloud Native Computing Foundationï¼CNCFï¼ãéçºã主å°ããã®ããcontainerdãã§ãã ãã®ææ°çã¨ãã¦3æ11æ¥ä»ã§ãªãªã¼ã¹ããããcontainerd 1.7.0ãã«ãLinux containers on FreeBSDããæ£å¼ãªæ©è½ã¨ãã¦çµã¿è¾¼ã¾ãã¾ããã Linux containers on FreeBSDã¯ãLinuxã³ã³ãããFreeBSDä¸ã§å®è¡ããéã«ãFreeBSDã®ãã¡ã¤ã«ã·ã¹ãã ã®ä»£ããLinuxãã¡ã¤ã«ã·ã¹ãã ã«ãã¦ã³ãããæ©è½ã ã¨èª¬æããã¦ãã¾ãã FreeBSDä¸ã§Linuxã³ã³ãããå®è¡å¯è½ã« FreeBSDã«ã¯ä»¥åããã·
楽天ã°ã«ã¼ãã«ã¤ãã¦åæãã¾ããç´è¿ã§2022年第2ååæ決ç®ãçºè¡¨ããããªãã¨8ååæé£ç¶å¶æ¥èµ¤åã¨ããç¶æ³ã§ãã8ååæã§ãããã丸2å¹´ã¨ãããã¨ã«ãªãã¾ãããã£ã¨èµ¤åãè¨ä¸ãã¦ããããã§ãããã®èµ¤åã®åå ã¨ããã®ãã楽天ã¢ãã¤ã«äºæ¥ï¼æºå¸¯é»è©±äºæ¥ï¼ã«ãªããããªãã§ããããã®èµ¤åããã£ããããã¤é»ååããã®ãï¼ã¨ããã®ã大ããªç¦ç¹ã«ãªã£ã¦ããã®ã§ããç§ãè¦ãã¨ããã«ããã¨ã楽天ã¯ãã®ã¢ãã¤ã«äºæ¥ããããããç¶ãã¦ããããã®ãªã®ãï¼ã¨çåãæ±ãã¦ããããã§ããéã«ã¢ãã¤ã«äºæ¥ããªãã£ããã楽天ã¯ã©ãã ãè¯ããªãã®ãï¼ã©ã®ãããªæ ªä¾¡ãã¤ãã®ãï¼ã¨ãããã¨ãããã®è¨äºã§ã¯è©¦ç®ããã¦ãã¾ãããã²æ¥½å¤©ã®æ ªä¾¡ããäºæ¥ã«èå³ã®ããæ¹ã¯ã覧ã«ãªã£ã¦ããã ããã°ã¨æãã¾ãã ï¼ã ããªã¥ã¼æ ªæè³å®¶ã®è¦æ¹ï½ã¤ã°ãæè³é¡§å ããªã¥ã¼æ ªæè³å®¶ã®è¦æ¹ï½ã¤ã°ãæè³é¡§å ãæ «äºé§¿ä»ï¼ ãé¢é£ãããã§ããã«æ§ããå«æ£
Harmony OSã®ã¢ã¼ããã¯ã㣠Linuxã«ã¼ãã«å±¤ãã·ã¹ãã ãµã¼ãã¹å±¤ããã¬ã¼ã ã¯ã¼ã¯å±¤ãã¢ããªã±ã¼ã·ã§ã³å±¤ã§æ§æããã¾ãã Linuxã«ã¼ãã«å±¤ ã«ã¼ãã«ãµãã·ã¹ãã ãã«ãã«ã¼ãã«ãæ¡ç¨ããã¾ããããã¤ã¹ã®ãªã½ã¼ã¹ã«å¿ãã¦ãé©åãªã«ã¼ãã«ãé¸ã°ãã¾ãã ã«ã¼ãã«æ½è±¡å層 ãã«ãã«ã¼ãã«ããã£ã«ã¿ãããã¨ã§ãä¸ã®å±¤ã«ã¿ã¹ã¯ç®¡çãã¡ã¢ãªç®¡çããã¡ã¤ã«ç®¡çããããã¯ã¼ã¯ç®¡çãªã©ã®ã«ã¼ãã«æ©è½ãæä¾ãã¾ãã ãã©ã¤ããµãã·ã¹ãã HDFã¯Harmony OSã«ããããã¼ãã¦ã§ã¢ã®ã¨ã³ã·ã¹ãã åºç¤ã§ãããå¤é¨ããã¤ã¹ã®ã¢ã¯ã»ã¹æ©è½ããã©ã¤ãã®éçºã»ç®¡çæ©è½ãæä¾ãã¾ãã ã·ã¹ãã ãµã¼ãã¹å±¤ Harmony OSã®ã¡ã¤ã³æ©è½ã¨ãªã層ã§ããããã¬ã¼ã ã¯ã¼ã¯å±¤ãéãã¦ãµã¼ãã¹ãæä¾ãã¾ãã åºæ¬æ©è½ãµãã·ã¹ãã ã»ãã åæ£ã¹ã±ã¸ã¥ã¼ã©ãåæ£ãã¼ã¿ç®¡çãåæ£ã½ããã¦ã§ã¢ãã¹ãã¢ã¼ã¯å¤è¨èªã©ã³ã¿ã¤
Armå ¥éåå¼·ä¼ã¨ã¯ãmacOSãArmã«ç§»è¡ãããã®æ©ã«Armã¢ã¼ããã¯ãã£ã§ã®ããã°ã©ãã³ã°ã«ã¤ãã¦å ¥éããã½ããã¦ã§ã¢ã¨ã³ã¸ãã¢ã®ããã®ä¼ã§ããä»å主å¬ã®@nullpo_head æ°ããArmã®ä»®æ³åæ¯æ´æ©æ§ã«ã¤ãã¦ããã®ä»çµã¿ããæ·±ã説æãã¾ããååã¯ãç¾ä»£ã®ãã¼ãã¦ã§ã¢ä»®æ³åæ¯æ´æ©æ§ãã«ã¤ãã¦ãå ¨ï¼åã ãã¼ãã¦ã§ã¢ä»®æ³åæ¯æ´ã¨ã¯ä½ã ä½ä¼¯ å¦åæ°ï¼å ¥éã»ãã·ã§ã³3ã¤ç®ã¯ãArmã®ä»®æ³åæ¯æ´æ©æ§ãã«ã¤ãã¦ã®å ¥éã»ãã·ã§ã³ã§ããã©ãããããããé¡ããã¾ãã æ¬çºè¡¨ã®ã¹ã¿ã¼ãã¨ã´ã¼ã«ã§ããVMwareã¨ãQemuã¨ã使ã£ããã¨ãããã©ä»®æ³ãã·ã³ã®ä»çµã¿ãªããç¥ããã¨ããã¨ãããã¾ãã¹ã¿ã¼ãã«ãªã£ã¦ãã¾ãã 1åç®ã®ã´ã¼ã«ã¯ãæè¿ã®VMã®ãã£ããããä»çµã¿ã¨ãã¼ãã¦ã§ã¢ä»®æ³åæ¯æ´ã¨ã¯ä½ãã¨ãããã¨ãããããã¨ãããã¦ãã®è©±ã®ãã¨ã«å®éã«Armã®ä»®æ³åæ¯æ´æ©æ§ã®æ¦è¦ã説æããArmã®ä»®æ³
ãèªå£²æ°èããå ¨æ¥æ¬ç©ºè¼¸ï¼ï¼¡ï¼®ï¼¡ï¼ãåä¸ã«æã¤ï¼¡ï¼®ï¼¡ãã¼ã«ãã£ã³ã°ã¹ï¼ï¼¨ï¼¤ï¼ã¯ãã¹ãã¼ããã©ã³ã使ã£ã¦ä»®æ³ç©ºéã§æ è¡ãã§ããæ°äºæ¥ã«ä¹ãåºããæ°åã³ããã¦ã¤ã«ã¹ã®æææ¡å¤§ã§æ è¡ããã«ããç¶æ³ãç¶ãä¸ãå®å¨ããå½å å¤ã®é½å¸ã絶æ¯ãï¼æ¬¡
æè¿GCPããç»å ´ããKubernetes YAMLã®Package managerã§ããKptã¯ãInfrastructure as Dataï¼Configuration as Dataï¼ãã¨ããèããããåºç¤ã¨ãã¦ãããæ¨ãé²ãããã¨ãã¦ããï¼ãã以å¤ã«ãKubernetesã®Ecosystemã«ã¯ï¼æ示ã¯ããã¦ããªãã¦ãï¼ãã®èãæ¹ãä¸å¿ã«ããï¼Infrastructure as Codeã¨ã¯ä½ãéãã®ããªã©æ´å²ãæ¯ãè¿ãã¤ã¤ã¾ã¨ãã¦ã¿ãï¼ ï¼æéã¯Borg, Omega, and Kubernetesã¨ããè«æã«ããããInfrastrcuture as Dataï¼Configuration as Dataï¼ãã¨ããè¨èãæ確ã«å®ç¾©ããæç« ã¯ãªãï¼ãã®è¨äºã¯Referencesã«æããããã¤ãã®Podcastã«ããã@kelseyhightowerã®çºè¨ãï¼ããã«åå¿ãã@bgra
Kubernetesãå©ç¨ããã¯ã©ã¦ããã¤ãã£ããªéçºã¨éç¨ã¨ã¯ä½ãï¼ ããã¾ã§ã¨ä½ãéãã®ãï¼ ãµã¤ãã¼ã¨ã¼ã¸ã§ã³ãéå±±æ°ãèªãï¼åç·¨ï¼ July Tech Festa 2019 Kubernetesãå©ç¨ããã¯ã©ã¦ããã¤ãã£ããªéçºãéç¨ã¯ãããã¾ã§ã¨ã©ãéãã®ã§ããããããããã¯ã©ã®ãããé²åãããã®ãªã®ã§ããããã 2019å¹´12æ8æ¥ã«ç£æ¥æè¡å¤§å¦é¢å¤§å¦ã§è¡ãããã¤ãã³ããJuly Tech Festa 2019ãã§ããµã¤ãã¼ã¨ã¼ã¸ã§ã³ãã®éå±±çä¹æ°ãè¡ã£ãã»ãã·ã§ã³ããKubernetes ã«ãã Cloud Native ãªéçºãã¨ãVM æ代ã®éçºããã§ãVMãç¨ããå¾æ¥ã®æ¹æ³ã¨æ¯è¼ãã¤ã¤ãKubernetesãåæã¨ããã¯ã©ã¦ããã¤ãã£ãã®ããæ¹ãåãããããç´¹ä»ããã¦ãã¾ãã ãã®å 容ããã¤ã¸ã§ã¹ãã§ç´¹ä»ãã¾ããããæ¬è¨äºã¯åç·¨ã¨å¾ç·¨ã«åããã¦ãã¾ãããã¾ãèªã¿ã®è¨äºã¯
ãWindows Virtual Desktopãæ£å¼ãµã¼ãã¹ã¨ãã¦æä¾éå§ããã¤ã¯ãã½ããç´æ£ã®VDIç°å¢ãAzureã®æ±è¥¿æ¥æ¬ãªã¼ã¸ã§ã³ãããå©ç¨å¯è½ã« ãã¤ã¯ãã½ããã¯ã¯ã©ã¦ããµã¼ãã¹ã¨ãã¦Windows 10ã®ä»®æ³ãã¹ã¯ãããç°å¢ãæä¾ãããWindows Virtual Desktopããæ£å¼ãµã¼ãã¹åããã¨çºè¡¨ãã¾ããã ãããªãã¯ãã¬ãã¥ã¼çã¯ç±³å½ãªã¼ã¸ã§ã³ããã®ã¿æä¾ããã¦ãã¾ããããæ£å¼ãµã¼ãã¹åã«ä¼´ããæ±æ¥æ¬ã¨è¥¿æ¥æ¬ãªã¼ã¸ã§ã³ãå«ãå ¨ä¸çã®Microsoft Azureã®ãªã¼ã¸ã§ã³ããæä¾ãããããã«ãªãã¾ããã Windows Virtual Desktopã¯Microsoft Azureã®ã¯ã©ã¦ããµã¼ãã¹ã¨ãã¦æä¾ããããããAzureã®ã¯ã©ã¦ãã³ã³ã½ã¼ã«ãã容æã«ãããã¸ã§ãã³ã°ãå¯è½ã ã¯ã©ã¤ã¢ã³ãã¨ãã¦Windowsãã·ã³ã¯å½ç¶ã®ãã¨ãã·ã³ã¯ã©ã¤ã¢ã³ããiPa
AWS Lambda ã®æ°ãã Hypervisor ã§ãã Firecracker ã«ã¤ãã¦æ£®ç°ã話ãã¾ãã Firecracker firecracker-microvm/firecracker: Secure and fast microVMs for serverless computing. Chromium OS Docs â Running Custom Containers Under Chrome OS chromiumos/platform/crosvm â Git at Google Virtual I/O Device (VIRTIO) Version 1.0 google/gvisor: Container Runtime Sandbox Follow up Google AI Blog: Learning to Predict Depth on the Pixe
KVM ãªã© Linux ã®ä»®æ³åæè¡ã«ã¤ãã¦æ£®ç°ã話ãã¾ããææ³ãªã©ã¯ããã·ã¥ã¿ã°Â #misreading ã [email protected] ã«ãå¯ããã ããã Virtual Machines: Versatile Platforms for Systems and Processes (The Morgan Kaufmann Series in Computer Architecture and Design): Jim Smith, Ravi Nair: 9781558609105: Amazon.com: Books QEMU, a Fast and Portable Dynamic Translator Tiny Code Generator TCC : Tiny C Compiler Xen and the Art of Virtualization x86 v
Docker à Android ã¨ãã¥ã¬ã¼ã¿ã§ãèªåãã¹ã(Appium)ã並ååã»çéã«ããç°å¢ãä½ã£ãã話 ãã㯠Mercari Advent Calendar 2018 10æ¥ç®ã®è¨äºã§ãã ããã«ã¡ã¯ãã¡ã«ã«ãªã®èªååï¼å質ä¿è¨¼ã°ã«ã¼ãï¼Automation & QA Groupï¼é称AQA) ã® æ ¹æ¬ å¾ ã§ãã ç§ã¯æ®æ®µããã¹ãèªååã»CI / CD æ¹åã»ãã®ä»ç¤¾å ã®çç£æ§ãä¸ããããã®èªååãè¡ã£ã¦ãã¾ãã ä»åã¯ãAndroidã»Appium ã®èªåãã¹ãã 20~30å°ã®ã¨ãã¥ã¬ã¼ã¿ã§ä¸¦åå®è¡ã§ãã ç°å¢ãä½æããã®ã§ããã®è©¦è¡é¯èª¤ã«ã¤ãã¦ã話ãããã¨æãã¾ãã ããã¾ã§ã® Android èªåãã¹ãç°å¢ã¨ãã®èª²é¡ Docker-Android ã¯ã©ã¦ãã§ã©ãå®è¡ãããã ä»®æ³ãã·ã³ã®å ¥ãå(Nested Virtualization) ãæå¹ã«ãã ãã¢ã¡ã¿ã«ã¤ã³
Googleããªã¼ãã³ã½ã¼ã¹ã§å ¬éããgVisorã¯ãæºä»®æ³åã®ãããªä»çµã¿ãç¨ãã¦å¾æ¥ã®ã³ã³ãããããå®å ¨æ§ãé«ããã³ã³ããã©ã³ã¿ã¤ã ã ãKubernetesæ代ã®æ¨æºã³ã³ããã©ã³ã¿ã¤ã ã¨ãªãæååè£ãããããªãã Dockerãªã©ã«ä»£è¡¨ãããã³ã³ããåä»®æ³åã¯ãOSã®ã¦ã¼ã¶ã¼ç©ºéã®åå空éãåé¢ãããã¨ãªã©ã§å®ç¾ããã¦ãã¾ãã ãã®ä»çµã¿ã®å©ç¹ã¯ããããããèµ·åããã¦ããOSã®ä¸ã§åå空éãåé¢ããã ãã§ã³ã³ãããèµ·åã§ããç¹ã«ããã¾ãããããã³ã³ããã®è¿ éãã軽éãã«ã¤ãªãã£ã¦ããä¸æ¹ãã³ã³ããéã§OSã®ã«ã¼ãã«ãå ±æãã¦ããããã«ã³ã³ããéã®åé¢ã¬ãã«ã¯é«ããªããåä¸OSä¸ã§ç¨¼åãã¦ããå¥ã®ã³ã³ããã®è² è·ã®å½±é¿ãåããããã£ãããã³ã³ããããOSã®ã·ã¹ãã ã³ã¼ã«ãç´æ¥å¼ã³åºãããã¨ãªã©ã«ããã»ãã¥ãªãã£ä¸ã®èª²é¡ãå¼ãèµ·ããããããããã¾ãã OCIã«æºæ ããruncäºæã®gViso
2018å¹´1æ3æ¥ã«CPUã«é¢é£ãã3ã¤ã®èå¼±æ§æ å ±ãå ¬éããã¾ãããå ±åè ã«ããã¨ãããã®èå¼±æ§ã¯MeltdownãSpectreã¨å¼ç§°ããã¦ãã¾ããããã§ã¯é¢é£æ å ±ãã¾ã¨ãã¾ãã èå¼±æ§ã®æ¦è¦ å ±åè ãèå¼±æ§æ å ±ã次ã®å°ç¨ãµã¤ãã§å ¬éããã Meltdown and Spectre (ã¾ãã¯ãã¡ã) 3ã¤ã®èå¼±æ§ã®æ¦è¦ãã¾ã¨ããã¨æ¬¡ã®éãã èå¼±æ§ã®å称 Meltdown Spectre CVE CVE-2017-5754ï¼Rogue data cache loadï¼ CVE-2017-5753ï¼Bounds check bypassï¼ CVE-2017-5715ï¼Branch target injectionï¼ å½±é¿ãåããCPU Intel IntelãAMDãARM CVSSv3 åºæ¬å¤ 4.7(JPCERT/CC) 5.6(NIST) âã«åã PoC å ±åè éå ¬é è«æä¸ã«x
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}