>> Even if this is positioned as "archival" or "research", I think
>> providing these after EOL is simply going to lead to further use of an
>> EOL Fedora.  That is essentially setting up those users for security
>> exploits and a poor user experience when none of their bugs will be
>> fixed.
> I agree with Josh 100% here. we should not enable people to run unsupported
> software.
And there's the rub---containers are about creating isolated 
environments for a specific integration purpose.
Unfortunately, updating and patching is at cross purposes to that, so we 
have this creative tension :).

Modern package-based systems like Fedora achieved a practical "patch 
early and often" setup with responsive security posture, but they are 
subject to creeping subsystem incompatibilities. Containers deliver 
integrated systems that address very well the initial requirements, but 
I haven't seen a good story on how they respond to dynamical security 
demands. So far their track record is not so good ( "over 30% of 
official images in Docker Hub contain high priority security 
vulnerabilities", ).

I am really curious how will this play out.
