Repository navigation
Add a micro-VM variant of the sandbox demo - #2467
Open
Ziyi Tan (Ziy1-Tan) wants to merge 1 commit into
Open
Ziyi Tan (Ziy1-Tan) wants to merge 1 commit into
Ziyi Tan (Ziy1-Tan) wants to merge 1 commit into
Conversation
The sandbox demo's only template targets gVisor. gVisor cannot start a sandbox on every platform, and where it cannot, the template's golden actor fails before its snapshot is taken, which fails the deploy before any actor exists. The demo then cannot be run at all. Add demo-sandbox-microvm as the alternative sandbox class, in the same shape counter and egress already carry: a WorkerPool on ateom-microvm naming the cluster-wide microvm SandboxConfig, plus an ActorTemplate with SANDBOX_CLASS_MICROVM. The server, the client, and the suspend/resume behavior are untouched. One deliberate divergence: the new pool does not pin ate.dev/substrate-version. Only counter and counter-microvm do; egress, jupyter, parking, multi-template, and the gVisor sandbox pool do not, and a pin that misses the installed node label leaves the pool unschedulable.
Ziyi Tan (Ziy1-Tan)
force-pushed
the
sandbox-microvm-demo
branch
from
October 11, 2026 14:59
e9ace52 to
ec23502
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
The sandbox demo's only template targets gVisor. gVisor cannot start a sandbox on
every platform, and where it cannot, the template's golden actor fails before its
snapshot is taken, which fails the deploy before any actor exists. The demo then
cannot be run at all.
Add
demo-sandbox-microvmas the alternative sandbox class, in the same shapecounter and egress already carry:
A reviewer can diff
sandbox-microvm.yaml.tmplagainstcounter-microvm.yaml.tmpland get the whole picture. The server, the client,and the suspend/resume behavior are untouched.
One deliberate divergence: the new pool does not pin
ate.dev/substrate-version. Only counter and counter-microvm do; egress,jupyter, parking, multi-template, and the gVisor sandbox pool do not, and a pin
that misses the installed node label leaves the pool unschedulable.
Verified on a kind cluster.
--delete-demo-sandbox-microvm && --deploy-demo-sandbox-microvmfrom an empty cluster exits 0, both workers reachRunning, and the golden snapshot is built. Then, through the router:
go test ./cmd/ate-setup/...(899 tests), plus the gofmt,boilerplate, and shellcheck verifiers.
demos/sandbox/README.mdgains a micro-VM variant section.