WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xense-devel

Re: [Xense-devel] [Q] about ACM/IA64 status

To: Reiner Sailer <sailer@xxxxxxxxxx>, xense-devel@xxxxxxxxxxxxxxxxxxx
Subject: Re: [Xense-devel] [Q] about ACM/IA64 status
From: Atsushi SAKAI <sakaia@xxxxxxxxxxxxxx>
Date: Mon, 05 Jun 2006 15:16:11 +0900
Delivery-date: Sun, 04 Jun 2006 23:17:08 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
In-reply-to: (Your message of "Wed, 31 May 2006 23:57:11 -0400") <OF1748D0F9.C8CAD63B-ON85257180.00127348-85257180.0015B75F@xxxxxxxxxx>
List-help: <mailto:xense-devel-request@lists.xensource.com?subject=help>
List-id: "A discussion list for those developing security enhancements for Xen." <xense-devel.lists.xensource.com>
List-post: <mailto:xense-devel@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=unsubscribe>
References: <OF1748D0F9.C8CAD63B-ON85257180.00127348-85257180.0015B75F@xxxxxxxxxx>
Sender: xense-devel-bounces@xxxxxxxxxxxxxxxxxxx
Hello Reiner

 I survey the possibility of implementing ACM to IA64.
The problem is that
the current ACM uses grub/multiboot specification.
(IA64 uses elilo at this moment. not grub)
To correctly implment ACM, we need to add multiboot specification to elilo.
Regrettably I have not enough time to implement the multiboot at this moment.

Thanks,
Atsushi SAKAI


>Hello Atsushi,
>
>thank you for your interest.
>
>> But At this moment,  Xen/IA64 CS10233(Xen-IA64-Unstable)
>> seems not support ACM.(I checked it by acm_init)
>
>We aim to support with the ACM all Xen platforms, including IA64, as soon
>as possible. The place where I know that  we must check the architecture
>is the place you are correclty pointing out: where the ACM reads the
>security policy at boot time from the memory (where grub has placed it).
>The access/address translation to this memory region is architecture
>dependent.
>
>We will put this support item high up on our list of essential items to
>fix. Until we are able to add this support, you might get around this
>problem by loading the security policy manually after the boot instead of
>configuring a boot policy (using 'xm loadpolicy'). I currently work on
>I386 platforms and I would be interested if this the only dependency on
>IA64 and if this work-around succeeds (compilation and run-time).
>
>This is a pretty active time and we are constantly working to complete the
>coverage of the ACM (resources and network, architecture support).
>Feedback, such as yours,  is of great value to us!
>
>Kindest Regards
>Reiner
>
>
>xense-devel-bounces@xxxxxxxxxxxxxxxxxxx wrote on 05/31/2006 10:27:09 PM:
>
>> Hello Reiner,
>>
>>  I have a question about ACM support on IA64 platform.
>> You send a patch for Hypervisor call macro.
>> The patch includes IA64 platform.
>>
>> But At this moment,  Xen/IA64 CS10233(Xen-IA64-Unstable)
>> seems not support ACM.(I checked it by acm_init)
>>
>> Are You plan to support ACM/IA64 near future?
>>
>> Thanks,
>> Atsushi SAKAI
>>
>>
>>
>> _______________________________________________
>> Xense-devel mailing list
>> Xense-devel@xxxxxxxxxxxxxxxxxxx
>> http://lists.xensource.com/xense-devel



------------------------------------------------------------
富士通(株) プラットフォーム技術開発本部 仮想システム開発統括部
酒井 敦    Email   sakaia@xxxxxxxxxxxxxx
                TEL     7124-4167(4月7日より)




_______________________________________________
Xense-devel mailing list
Xense-devel@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xense-devel

<Prev in Thread] Current Thread [Next in Thread>
  • Re: [Xense-devel] [Q] about ACM/IA64 status, Atsushi SAKAI <=