Technology · Ebook
Youki: A Rust Container Runtime
by Shriira Press
Youki is a low-level container runtime written in Rust that implements the OCI runtime specification, serving as a drop-in alternative to runc. It turns an image and a configuration file into a running, isolated Linux process, wiring up namespaces, cgroups, capabilities, and seccomp with memory safety and a smaller, faster footprint than Go-based runtimes. This book starts with the problem a runtime solves and where youki fits in the stack, then works through the OCI spec and the container bundle, youki's crate-based architecture, its distinctive three-process creation model, the kernel isolation primitives it drives, the create-start-kill-delete lifecycle, rootless containers, and running youki under Docker and containerd. By the end you will understand not just how to use youki, but how a container is born.
Contents
- 1Preface
- 2Chapter 1 — What Youki Is
- 3Chapter 2 — The OCI Runtime Specification and the Bundle
- 4Chapter 3 — Architecture and the Crate Ecosystem
- 5Chapter 4 — The Three-Process Creation Model
- 6Chapter 5 — Isolation Primitives: Namespaces, Cgroups, Capabilities, Seccomp
- 7Chapter 6 — The Container Lifecycle
- 8Chapter 7 — Rootless Containers
- 9Chapter 8 — Youki in Practice
