Design and implementation of warden network in Foundry Cloud -- IPtable rule configuration

In the Foundry V2 Cloud version, the platform uses warden technology to implement the resource control and isolation of the user application instance. In the network, container warden technology to create a virtual network card, dedicated to the internal use of container warden, in addition to the container warden inside the virtual network card in the host host server warden is also paired with a virtual network card, as container external network. Only create two virtual network card, in principle, can guarantee the physical "connectivity", but it is difficult to achieve communication between the network, China Unicom, it is in the physical resources, as well as the situation of virtual physical resources, wa...
The use of environment variables in Foundry DEA Cloud startup application instance

In Foundry V2 Cloud, when the application users need to start the application example, the user through the CLI cloud to controller CF to send a request, and controller cloud to DEA through to forward the request to start NATS. The real implementation of the start, is done by DEA, DEA mainly to do the work to start a container warden, and droplet and other content to copy into the container internal, the final configuration of the specified environment variables, the start of the application of these environment variables start script. This article will explain how to use the Foundry DEA as an example of the startup configuration loop Cloud...
Foundry DEA in Cloud and warden communication to complete the application port monitoring

In Foundry V2 DEA, Cloud is a user application running control module, and the actual operation of the application is dependent on the warden. More specifically, is the DEA to receive the Controller Cloud request; DEA to send a request to the server warden; server warden to create container warden and the user application droplet and other environmental configuration is good; DEA to send the application to start the request to serve warden; finally container warden to start the implementation of the start application. This paper mainly describes how warden interacts with DEA to ensure that the application of the end user can be successful...
Discussion on the safety of Foundry warden container Cloud

This article from the Foundry warden container Cloud to start, to explore the safety of container warden. Mainly concentrated in the multi tenant between container, container and cloud platforms may exist between security issues. ...
Architecture and implementation of warden in Foundry Cloud

In Foundry Cloud, when the application developer's application by the Foundry Cloud component DEA to run, the application of resource isolation and control is particularly important, and the existence of warden is a good solution to this problem. Foundry warden Cloud project is the primary purpose of providing a simple interface to manage the isolated environment, these isolated environment can be called "containers", they can be used in CPU, memory usage, disk usage and device access rights to do the corresponding restrictions. Starting with the warden architecture, this paper briefly introduces the client warden, server warden and container warden...
