This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
Home Products Support Community News


Re: [Xen-devel] [PATCH 04/17] vmx: nest: domain and vcpu flags

On Thu, 2010-05-20 at 18:55 +0800, Tim Deegan wrote:
> At 10:54 +0100 on 20 May (1274352874), Qing He wrote:
> > But I still put this flags here because there have been some people
> > expressing security concerns, that in some situations, hardware
> > virtualization needs to be explicitly disabled to avoid stealth VMM.
> I understand that people might want to disable nested HVM, and it's fine
> to do that in the domain builder; I just don't think that domcrf is te
> right Xen interface.  Christoph's use of HVM_PARAM sounds right to me. 

OK, I'll change to HVM_PARAM solution.

> Tim.
> -- 
> Tim Deegan <Tim.Deegan@xxxxxxxxxx>
> Principal Software Engineer, XenServer Engineering
> Citrix Systems UK Ltd.  (Company #02937203, SL9 0BG)

Xen-devel mailing list