HP-UX Containers (SRP) A.03.01 Administrator's Guide
70
Property Workload
Container
System Container
(private FS)
System Container
(shared FS)
Memory overhead per
container
Negligible
CPU/
networking/storage
access overhead per
container
Negligible
CPU and memory
allocation controls
Guaranteed minimum or dedicated
Private namespace
support
Network portspace • Hostname/Nodename/Domainname
• IPC
• File system (chroot based)
• Network portspace
• Loopback IP address portspace
Processes Isolated Isolated
System services
provisioned per container
Secure Shell
(optional)
• Secure Shell (optional)
• inetd
• syslogd
• utmpd
• pwgrd
• cron
• swagentd
• rpcbind
• NFS client daemons
Lifecycle
Per container init processing, start, stop, import, and export.
User management Managed from the
global view. The
system administrator
identifies users
allowed to login to
the global view
and/or containers.
Managed within the container. Per container
/etc/password, /etc/group,
/etc/nsswitch.conf, /etc/pam.conf files
that are provided in the container.
IPC considerations
IPC objects are
accessible from the
global view.
IPC objects such as semaphores, message-
queues, and shared memory are exclusive to the
container and are not visible in the global view.
NFS considerations None. Mounts done within the container are exclusive to
the container; they are not visible or accessible
from the global view.
Device management No restrictions. Devices can be created only in the global view.