Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I believe it uses the latter, but the missing piece is a userspace TCP/IP stack, since otherwise you'd need TUN device permissions to bridge over the impendence mismatch of sockets and IP packets containing TCP/UDP segments/datagrams.

It uses gVisor for that.



Ugh, now this is driving me crazy. So I'm 99% sure that that exists, but I cannot for the life of me find the link. There's a CDN / edge compute company that gets published on HN semi-regularly that has this sweet client that... does a lot of things, but among them is connecting to your serverless containers by actually instantiating an entire TCP/IP stack in the application that's hooked up to the remote end over a wireguard proxy that's also in-application...

Edit: FLY! https://news.ycombinator.com/item?id=30275905




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: