Istio, Kubernetes, and other open source technologies are in production use on nuclear submarines, space and weapon systems as well as fighter jets. Containerization has also positively impacted their cybersecurity. While containerization systems, in general, can increase attack surface area, containers within the DoD can be quickly spun up or killed at will, which significantly decreases the chance of someone successfully infiltrating the US government.
1
novolunt OP ```
Moreover, the benefits of the DoD’s move to DevSecOps and Open Source stretch beyond the increased operational capacity of the US Government. Everything that they do is upstreamed back to the open-source community. Chaillan pointed to an abundance of occasions where open source and commercial projects that were scanned and assessed by the DoD had noted vulnerabilities that were subsequently fixed. A public benefit of the DevSecOps joint program is that all of these container sources are available, as well as scanned and vetted containers. ``` |
2
janus77 2022-07-09 13:29:05 +08:00
米国允许经商的,他们有商业目标的考量。用新技术可以节省成本。国内嘛,没这个必要的,而且人家敢不敢用还是另一回事呢,可能担心有后门。国内 gov 使用的 windows 系统都是要审核源码的
另外屎山理论就不说了,我感觉就算是米国也一样有大量的上古系统吧,之前不是说很多系统都用 COBOL 写的么 |
3
gengchun 2022-07-13 14:18:00 +08:00
这里全是润学的,你问米国 Military 什么情况,搞不好还有人会答。
另外,不要以为 k8s, istio 这种新技术应用的宣传料材会和国内有什么本质区别。类似的新技术应用对他们来说,也就是 CV 或者招标文件上的一行字而已。甲方只需要这行字可以升官,乙方也只是想搞个 show case 能参展而已。谁家不是活越少越好。玩真的,IBM 这种大厂搞砸 US Gov. 的项目尸横遍野。 |
4
sbilly 2022-07-21 09:24:22 +08:00
无所谓吧。。。自己建 docker 那些基础设施就行了吧
|