{"id":76911,"date":"2020-04-06T07:42:08","date_gmt":"2020-04-06T05:42:08","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/vypusk-instrumentariya-upravleniya-kontejnerami-lxc-i-lxd-4-0"},"modified":"2020-04-06T07:42:08","modified_gmt":"2020-04-06T05:42:08","slug":"vypusk-instrumentariya-upravleniya-kontejnerami-lxc-i-lxd-4-0","status":"publish","type":"post","link":"https:\/\/prohoster.info\/en\/blog\/news\/vypusk-instrumentariya-upravleniya-kontejnerami-lxc-i-lxd-4-0","title":{"rendered":"Release of container management tools LXC and LXD 4.0","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Canonical <noindex><a rel=\"nofollow\" href=\"https:\/\/ubuntu.com\/blog\/lxd-4-0-lts-stable-release-is-now-available\">released<\/a><\/noindex> release of the toolkit for organizing work of isolated containers <noindex><a rel=\"nofollow\" href=\"https:\/\/linuxcontainers.org\/lxc\/\">LXC 4.0<\/a><\/noindex>, container manager <noindex><a rel=\"nofollow\" href=\"https:\/\/linuxcontainers.org\/lxd\/\">LXD 4.0<\/a><\/noindex> and virtual file system <noindex><a rel=\"nofollow\" href=\"https:\/\/linuxcontainers.org\/lxcfs\/\">LXCFS 4.0<\/a><\/noindex> for simulating in containers \/proc, \/sys, and a virtual representation of cgroupfs for distributions without namespace support for cgroup. Branch 4.0 is categorized as a long-term support release, with updates provided for 5 years<\/p>\n<p>LXC is a runtime for running both system containers and containers for individual applications (OCI). It includes the liblxc library, a set of utilities (lxc-create, lxc-start, lxc-stop, lxc-ls, etc.), templates for building containers, and a set of bindings for various programming languages. Isolation is achieved using the native mechanisms of the Linux kernel. The namespaces mechanism is used for isolating processes, network stack ipc, uts, user IDs, and mount points. Cgroups are used for resource limitation. To lower privileges and restrict access, kernel features such as Apparmor profiles, SELinux policies, Seccomp, Chroots (pivot_root), and capabilities are employed. The LXC code <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/lxc\/lxc\">is written<\/a><\/noindex> is written in C and released under the GPLv2 license.<\/p>\n<p>LXD is an extension on top of LXC, CRIU, and QEMU used for centralized management of containers and virtual machines on one or multiple servers. While LXC is a low-level toolkit for manipulating at the level of individual containers, LXD is implemented as a background process that accepts requests over the network via a REST API and allows the creation of scalable configurations deployed on a cluster of multiple servers.<br \/>\nVarious storage backends are supported (directory tree, ZFS, Btrfs, LVM), snapshots with state capture, live migration of running containers from one machine to another, and tools for organizing image storage. The LXD code <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/lxc\/lxd\">is written<\/a><\/noindex> is written in Go and released under the Apache 2.0 license.<\/p>\n<p>Key <noindex><a rel=\"nofollow\" href=\"https:\/\/discuss.linuxcontainers.org\/t\/lxc-4-0-lts-has-been-released\/7182\">improvements<\/a><\/noindex> in LXC 4.0:<\/p>\n<ul>\n<li class=\"l\"> The driver for cgroup operations has been completely rewritten. Support for the unified hierarchy of cgroup (cgroup2) has been added. Functionality for the freezer controller has been introduced, which allows stopping operations in cgroup and temporarily freeing up certain resources (CPU, I\/O, and potentially even memory) for other tasks;\n<li class=\"l\"> Infrastructure has been implemented for intercepting system calls;\n<li class=\"l\"> Support for the kernel subsystem \"pidfd\" has been added, designed to handle situations involving PID reuse (pidfd is tied to a specific process and does not change, whereas the PID can be associated with another process after the current one linked to this PID has completed).\n<li class=\"l\"> Improved creation and deletion of network devices, as well as their movement between network subsystem namespaces;\n<li class=\"l\"> The ability to move wireless network devices (nl80211) into containers has been implemented.\n<\/ul>\n<p>Key  <noindex><a rel=\"nofollow\" href=\"https:\/\/discuss.linuxcontainers.org\/t\/lxd-4-0-lts-has-been-released\/7231\/\">improvements<\/a><\/noindex> in LXD 4.0:<\/p>\n<ul>\n<li class=\"l\"> Support has been added for launching not only containers but also virtual machines;\n<li class=\"l\"> For segmenting LXD servers, the concept of projects has been proposed, simplifying the management of groups of containers and virtual machines. Each project can include its own set of containers, virtual machines, images, profiles, and storage pools. Custom limits and settings can be defined in relation to projects;\n<li class=\"l\"> Support for intercepting system calls for containers has been added;\n<li class=\"l\"> The creation of environment backups and restoration from them has been implemented;\n<li class=\"l\"> Automated creation of snapshots for environments and storage pools has been ensured, with options for specifying snapshot retention time;\n<li class=\"l\"> An API has been added for monitoring the state of the network (lxc network info);\n<li class=\"l\"> Support added   <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/linuxkit\/linuxkit\/tree\/master\/projects\/shiftfs\">, a virtual FS for mapping mount points to user namespace, added support for direct I\/O mode (O_DIRECT, working without buffering and bypassing cache);<\/a><\/noindex>, a virtual FS for mapping mount points to user ID namespace;\n<li class=\"l\"> New types of network adapters \"ipvlan\" and \"routed\" have been proposed;\n<li class=\"l\"> A backend for using CephFS-based storage has been added;\n<li class=\"l\"> Support for image replication and multi-architecture configurations has been implemented for clusters;\n<li class=\"l\"> The ability to manage access based on roles (RBAC) has been added;\n<li class=\"l\"> Support for CGroup2 has been added;\n<li class=\"l\"> The ability to configure MAC addresses and define the source address for NAT has been added;\n<li class=\"l\"> An API for managing DHCP bindings (leases) has been added;\n<li class=\"l\"> Support for Nftables has been added.\n<\/ul>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Source: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=52679\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Canonical \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b\u0430 \u0440\u0435\u043b\u0438\u0437 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u044f \u0434\u043b\u044f \u043e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0438\u0437\u043e\u043b\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u044b\u0445 \u043a\u043e\u043d\u0442\u0435\u0439\u043d\u0435\u0440\u043e\u0432 LXC 4.0, \u043c\u0435\u043d\u0435\u0434\u0436\u0435\u0440\u0430 \u043a\u043e\u043d\u0442\u0435\u0439\u043d\u0435\u0440\u043e\u0432 LXD 4.0 \u0438 \u0432\u0438\u0440\u0442\u0443\u0430\u043b\u044c\u043d\u043e\u0439 \u0424\u0421 LXCFS 4.0 \u0434\u043b\u044f \u0441\u0438\u043c\u0443\u043b\u044f\u0446\u0438\u0438 \u0432 \u043a\u043e\u043d\u0442\u0435\u0439\u043d\u0435\u0440\u0430\u0445 \/proc, \/sys \u0438 \u0432\u0438\u0440\u0442\u0443\u0430\u043b\u0438\u0437\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u0433\u043e \u043f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u0438\u044f cgroupfs \u0434\u043b\u044f \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432 \u0431\u0435\u0437 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u0438 \u043f\u0440\u043e\u0441\u0442\u0440\u0430\u043d\u0441\u0442\u0432 \u0438\u043c\u0451\u043d \u0434\u043b\u044f cgroup. \u0412\u0435\u0442\u043a\u0430 4.0 \u043e\u0442\u043d\u0435\u0441\u0435\u043d\u0430 \u043a \u0432\u044b\u043f\u0443\u0441\u043a\u0430\u043c \u0441 \u0434\u043b\u0438\u0442\u0435\u043b\u044c\u043d\u043e\u0439 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u043a\u043e\u0439, \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u0434\u043b\u044f \u043a\u043e\u0442\u043e\u0440\u044b\u0445 \u0444\u043e\u0440\u043c\u0438\u0440\u0443\u044e\u0442\u0441\u044f \u0432 \u0442\u0435\u0447\u0435\u043d\u0438\u0435 5 \u043b\u0435\u0442 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-76911","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Canonical \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b\u0430 \u0440\u0435\u043b\u0438\u0437 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u044f \u0434\u043b\u044f \u043e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0438\u0437\u043e\u043b\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u044b\u0445.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/en\/blog\/news\/vypusk-instrumentariya-upravleniya-kontejnerami-lxc-i-lxd-4-0\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412\u044b\u043f\u0443\u0441\u043a \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u044f \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f \u043a\u043e\u043d\u0442\u0435\u0439\u043d\u0435\u0440\u0430\u043c\u0438 LXC \u0438 LXD 4.0 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Canonical \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b\u0430 \u0440\u0435\u043b\u0438\u0437 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u044f \u0434\u043b\u044f \u043e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0438\u0437\u043e\u043b\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u044b\u0445.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/en\/blog\/news\/vypusk-instrumentariya-upravleniya-kontejnerami-lxc-i-lxd-4-0\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-04-06T05:42:08+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-04-06T05:42:08+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Release of the LXC and LXD container management toolkit 4.0 | ProHoster","description":"Canonical has released a toolkit for organizing isolated operations.","canonical_url":"https:\/\/prohoster.info\/en\/blog\/news\/vypusk-instrumentariya-upravleniya-kontejnerami-lxc-i-lxd-4-0","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"en_US","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412\u044b\u043f\u0443\u0441\u043a \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u044f \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f \u043a\u043e\u043d\u0442\u0435\u0439\u043d\u0435\u0440\u0430\u043c\u0438 LXC \u0438 LXD 4.0 | ProHoster","og:description":"\u041a\u043e\u043c\u043f\u0430\u043d\u0438\u044f Canonical \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b\u0430 \u0440\u0435\u043b\u0438\u0437 \u0438\u043d\u0441\u0442\u0440\u0443\u043c\u0435\u043d\u0442\u0430\u0440\u0438\u044f \u0434\u043b\u044f \u043e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438 \u0440\u0430\u0431\u043e\u0442\u044b \u0438\u0437\u043e\u043b\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u044b\u0445.","og:url":"https:\/\/prohoster.info\/en\/blog\/news\/vypusk-instrumentariya-upravleniya-kontejnerami-lxc-i-lxd-4-0","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-04-06T05:42:08+00:00","article:modified_time":"2020-04-06T05:42:08+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"76911","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 17:27:22","updated":"2022-10-07 03:12:43","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/76911","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/comments?post=76911"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/76911\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media?parent=76911"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/categories?post=76911"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/tags?post=76911"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}