Kata Containers Versie 3.0.0 gelanceerd: sneller, veiliger en meer support voor nieuwe omgevingen

12 oktober 2022

Het open source project Kata Contai­ners heeft vandaag versie 3.0.0 van haar software uitge­bracht. Kata Contai­ners is een veilige container runtime met licht­ge­wicht virtuele machines die presteren als contai­ners, maar een sterkere werk­las­t­i­so­latie leveren met behulp van hard­wa­re­vir­tu­a­li­sa­tie­tech­no­logie als tweede verdedigingslaag.

Sinds de lancering in 2017 is Kata Contai­ners omarmd door users die waarde hechten aan “de snelheid van contai­ners met de security van VM’s”. Kata Contai­ners 3.0.0 bouwt voort op de meest waar­de­volle eigen­schappen van software: security, snelheid en compa­ti­bi­li­teit met een grote verschei­den­heid aan omge­vingen en hardware. 

Meer details zijn te vinden in het Engels­ta­lige pers­be­richt en hieronder: 

Kata Containers Version 3.0.0 Arrives: Faster, More Secure, Support for New Environments

Enhanced compa­ti­bi­lity features abound in Kata Contai­ners 3.0.0, lending support for GPUs, Rust, Intel TDX and more. 

Today, the open source project Kata Contai­ners issued version 3.0.0 of the software. Kata Contai­ners is a secure container runtime with lightweight virtual machines that feel and perform like contai­ners but provide stronger workload isolation using hardware virtu­a­li­za­tion tech­no­logy as a second layer of defense. This solution offers a fast and secure deploy­ment option for anything from highly regulated workloads to untrusted code, spanning public and private cloud, contai­ners-as-a-service and edge computing use cases.

Since launching in 2017, Kata Contai­ners has been embraced by users who value “the speed of contai­ners with the security of virtual machines.” Kata Contai­ners 3.0.0 builds on software’s most valuable features: security, speed and compa­ti­bi­lity with a wide variety of envi­ron­ments and hardware. 

Key Features of Kata Contai­ners 3.0.0:

  • A newly written runtime imple­men­ta­tion in Rust and an optional inte­grated Rust hyper­visor, further reducing Kata Contai­ners resource consump­tion and mana­ge­ment complexity.
    • Rust removes the overhead of the GO runtime.
    • Inte­grated Rust hyper­visor ensures that Kata Contai­ners only spawn one host component for each POD.
    • Aligns with the popular trends in the Linux community to rustify core software stack
  • Improved hyper­visor support, making Kata Contai­ners more acces­sible to a wider range of envi­ron­ment configurations.
    • Newly added support for GPUs, such as VFIO (Virtual function I/​O), which allows safe, non-privi­leged, userspace drivers and PCI(e) devices in general.
    • Upgrade to cloud-hyper­visor v26.0 with several impro­ve­ments to cloud-hyper­visor support for Intel TDX
  • Code updates to support the latest stable Linux Kernel release.
    • Each deploy­ment of the Kata Container runtime includes its own kernel for increased security & container isolation. The kernel in Kata Contai­ners 3.0.0 has been updated to run v5.19.2.
  • Increased compa­ti­bi­lity with leading cloud-native technologies. 
    • Kata Contai­ners supports popular runtimes including (but not limited to) Kuber­netes, CRI‑O, Contai­nerd and OCI v1.0.0‑rc5 Runtime specification.

“There’s a lot of exci­te­ment in the Kata Contai­ners community around how the improved hyper­visor support in Kata Contai­ners 3.0.0 expands compa­ti­bi­lity with a number of popular envi­ron­ment confi­gu­ra­tions and hardware tech­no­lo­gies, such as GPUs,” said Treva Williams, technical community manager at the Open Infra­struc­ture Foun­da­tion. “Kata community members are constantly seeking ways to improve and do not shy away from a challenge, such as rewriting Kata in Rust. Switching to Rust signi­fi­cantly increases speed, perfor­mance and safety, so the community’s hard work in making the switch pays huge dividends for Kata users and future contri­bu­tors as well.” 

Pin It on Pinterest

Share This