|
|
|
|
|
|
|
|
|
|
xen-users
Re: [Xen-users] xen in hosting envoroment
Azrul Rahim wrote:
Hi,
I am planning to offer a hosted xen server within my locality. My
question is, is there any security issue that I should be aware of. I
am currently letting user to choose which kernel they want to boot.
Is there any possibility, that with, say a recompiled kernel or kernel
module, a user can actually gain access to the Dom0?
Thank you
Azrul Rahim
That would be a *SERIOUS* bug, and if anyone knew of such, we'd be
reporting it pretty fast. There was a fascinating RHEL bug reported, in
the use of pygrub, because pygrub would read the grub contents from the
DomU at boot time and this created an interesting security risk for the
pygrub program itself.
A much bigger risk is the standard co-location risk of "these machines I
don't control are inside my network: how do I protect myself from them?".
_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users
|
|
|
|
|