|
|
|
|
|
|
|
|
|
|
xen-ia64-devel
RE: [Xen-ia64-devel] [Xen-devel] Call hypercall straightly from user spa
Keir Fraser write on 2006年12月30日 23:58:
> On 30/12/06 3:22 pm, "Tristan Gingold" <tgingold@xxxxxxx> wrote:
>
>>> As you mention before, we may call hypercall straightly from user
>>> space rather than bouncing through guest kernel.
>> Hi,
>>
>> I haven't found the reference, but how security is addressed ? How
>> to prevent a user process from making such hypercalls ?
>
> It would have to be enabled on a per-process basis by the guest
> kernel, presumably during context switch.
And only user process on dom0 can do this.
--Anthony
>
> -- Keir
_______________________________________________
Xen-devel mailing list
Xen-devel@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-devel
|
|
|
|
|