6 ms·
This stack is run by a single customer on trusted code isolated in their own AWS env. (I wrote it originally 6-7 years back) There are radically better isolati
by lox 3y ago
This stack is run by a single customer on trusted code isolated in their own AWS env. (I wrote it originally 6-7 years back)
There are radically better isolation strategies now. Firecracker and/or Sysbox hardened docker containers is one I’ve recently implemented.