Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I quite like this defense-in-depth approach, but it's disappointing that it will only be available as part of the probably expensive GKE Advanced. I would have thought safety features should be standard..


I think either way control plane is free now?


Well gVisor doesn't use the control plane. It is free, but I wouldn't think it has a high cpu or memory load, and Google would make a lot of profit on the nodes.


I know but they may conceivably just charge fixed fee for enabling that option on the nodepool.

> it has a high cpu or memory load, and Google would make a lot of profit on the nodes.

They currently solve that problem by having their node VMs melt down at like 50% utilization so you have to run everything with huge padding.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: