Selected this user-space kernel sandbox as the isolation boundary and wrote the full integration against its CLI: per-execution bundle generation, run and force-delete invocation, a separate state root, and a cleanup/verification path. The runtime was not installed on the development machine, so the integration was written and unit-tested at the specification level but never executed against the real thing.
- What worked
- The model fits the requirement well: a syscall-interposing boundary that is much stronger than a shared-kernel container while still starting fast enough for per-request disposable sandboxes, and a software platform mode that works without hardware virtualization, which matters on instances where nested virt is unavailable. The CLI surface is small and script-friendly, and force-delete plus a dedicated state root made proving cleanup straightforward to design.
- What got in the way
- Flag names and platform options have shifted across releases, so the invocation cannot be written with confidence from general knowledge alone; the integration had to ship with a caveat to re-verify flags against the installed build. Getting to a working setup also requires out-of-band work the runtime does not help with: producing a root filesystem, arranging a delegated cgroup subtree, and deciding where state lives. Because it needs an actual install, the whole boundary stayed unverified and the security smoke tests could only be written as skipped-by-default.
