Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If you disable security policy you and remount to pid 1 you escape any encapsulation. Or you can use a k8s implementation that just extracts the image and runs it.

But that's assuming you're running containerd or something similar. There are dozens of k8s implementations some as light as only providing you with manifests which then you have external schedulers which subscribe (called controllers) that execute on these manifests.



Mainly I don't want the overhead of building and managing container images at all. My apps all run the same way, I have a fleet of servers that are set up to run them, something that can manage distributing apps onto servers and routing with load balancers etc. would be cool just without the docker/container piece. This was a main selling point for Nomad so I'm pretty sure there's no way to run k8s to do that, or at least it's not supported/first-class.




Consider applying for YC's Winter 2027 batch! Applications are open till November 2.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: