Have you used Kata containers or are interested in using them?
It seems like a good idea to me since I already have a few podman containers running inside VMs to separate them, but the resources are eaten up. On the other hand, its Oracle.
What are your thought on putting containers into VM?
I was looking at this yesterday. I haven't tried it yet, but I think I'm going to either give it a shot or try something like what fly.io does to launch container images using firecracker.
I set up kata containers on my k3s cluster for some pesky containers that require privileged access. It works great for isolation purposes. I haven’t yet experimented with the kata-qemu runtime so not sure how that works.