Docker has always used microVMs (well since 2016)
9 hours ago
- MicroVMs are considered more secure than traditional Linux Docker containers.
- Docker Desktop has always used microVMs, originally via VirtualBox, then evolved to a custom library VMM built using Mirage Unikernel libraries.
- The microVM technology uses a minimal Linux kernel and root filesystem based on LinuxKit.
- This technology powers both Docker Desktop and Docker Sandboxes, enabling native app experience and secure isolation.
- Docker Sandboxes allow secure execution of coding agents with strict governance and isolation.