qemu-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Qemu-devel] snabbswitch integration with QEMU for userspace etherne


From: Julian Stecklina
Subject: Re: [Qemu-devel] snabbswitch integration with QEMU for userspace ethernet I/O
Date: Thu, 30 May 2013 10:08:51 +0200
User-agent: Mozilla/5.0 (X11; Linux x86_64; rv:17.0) Gecko/20130514 Thunderbird/17.0.6

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 05/30/2013 08:46 AM, Stefan Hajnoczi wrote:
> On Wed, May 29, 2013 at 6:02 PM, Julian Stecklina 
> <address@hidden> wrote:
>> On 05/29/2013 04:21 PM, Stefan Hajnoczi wrote:
>>> The fact that a single switch process has shared memory access
>>> to all guests' RAM is critical.  If the switch process is
>>> exploited, then that exposes other guests' data!  (Think of a
>>> multi-tenant host with guests belonging to different users.)
>> 
>> True. But people don't mind having instruction decoding and half
>> of virtio in the kernel these days, so it can't be that security
>> critical...
> 
> No, it's still security critical.  If there were equivalent
> solutions with better security then I'm sure people would accept
> them.  It's just that there isn't an equivalent solution yet :).

My comment was more or less meant in a resigning way. ;) At least we
are not putting HTTP servers in there any more.

Julian

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.19 (GNU/Linux)

iEYEARECAAYFAlGnCRMACgkQ2EtjUdW3H9mzFwCghZxvckYgZ4atLm3HLPPWF/Lb
688AnRXm12jbBlmCVOKSaDUHHejEdh7O
=csrK
-----END PGP SIGNATURE-----



reply via email to

[Prev in Thread] Current Thread [Next in Thread]