Hacker News new | ask | show | jobs
by k_bx 161 days ago
We're not talking VM vs containers. We're talking VM vs no VM at all in base system.
1 comments

I understand that. I'm saying that wrapping all the dev containers up inside a single VM serves to further protect the host system from the dev containers.