WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

[Xen-users] CentOS5.1, Each xen image contain its own kernel, any securi

To: xen-users@xxxxxxxxxxxxxxxxxxx
Subject: [Xen-users] CentOS5.1, Each xen image contain its own kernel, any security issue?
From: "Azrul Rahim" <write2me@xxxxxxxxx>
Date: Mon, 14 Apr 2008 15:15:27 +0800
Delivery-date: Mon, 14 Apr 2008 00:16:02 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx

The default CenOS 5.1 setup will basically install the domU kernel inside its own image. This mean that domU can actually recompile and assign different kernel for it to boot up.

1. If there any security issue to allow user to select their own Kernel ?

2. Is is possible at all, by loading different kernel or modules, the domU user might be able to compromise dom0 ?

Thanks!

--
Azrul Rahim

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users
<Prev in Thread] Current Thread [Next in Thread>
  • [Xen-users] CentOS5.1, Each xen image contain its own kernel, any security issue?, Azrul Rahim <=