[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-devel] [PATCH 04/17] vmx: nest: domain and vcpu flags

On Thursday 20 May 2010 14:53:41 Qing He wrote:
> On Thu, 2010-05-20 at 18:55 +0800, Tim Deegan wrote:
> > At 10:54 +0100 on 20 May (1274352874), Qing He wrote:
> > > But I still put this flags here because there have been some people
> > > expressing security concerns, that in some situations, hardware
> > > virtualization needs to be explicitly disabled to avoid stealth VMM.
> >
> > I understand that people might want to disable nested HVM, and it's fine
> > to do that in the domain builder; I just don't think that domcrf is te
> > right Xen interface.  Christoph's use of HVM_PARAM sounds right to me.
> OK, I'll change to HVM_PARAM solution.

Do you really want to do duplicate work ? IMO, it is better to adapt my patch.


---to satisfy European Law for business letters:
Advanced Micro Devices GmbH
Einsteinring 24, 85609 Dornach b. Muenchen
Geschaeftsfuehrer: Andrew Bowd, Thomas M. McCoy, Giuliano Meroni
Sitz: Dornach, Gemeinde Aschheim, Landkreis Muenchen
Registergericht Muenchen, HRB Nr. 43632

Xen-devel mailing list



Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.