OpenSolaris Immutable Service Containers

Glenn published the first public version of the OpenSolaris Immutable Service Containers. This is an really interesting concept. This concept use containers to isolate application. This isn´t something new, but the way it´s done here, is really cool:

In an ISC configuration, the global zone is treated as a system controller and exposed services are deployed (only) into their own non-global zones. From a networking perspective, however, the entire environment is viewed as a single entity (one IP address) where the global zone acts as a security monitoring and arbitration point for all of the services running in non-global zones.

PS: Glenn, i didn´t found the time to check ISC as promised by twitter out of the same reason there aren´t many blog postings at the moment, sorry. But´s still on my ToDo-list.