From mboxrd@z Thu Jan 1 00:00:00 1970 From: Stefano Stabellini Subject: Re: [PATCH RFC v1 00/13] Introduce HMV without dm and new boot ABI Date: Wed, 24 Jun 2015 18:54:08 +0100 Message-ID: References: <1434989487-74940-1-git-send-email-roger.pau@citrix.com> <20150622180544.GA9175@l.oracle.com> <558A7CC5.7060400@citrix.com> <558ADB1E.2040103@oracle.com> Mime-Version: 1.0 Content-Type: multipart/mixed; boundary="1342847746-1048548278-1435168455=:4360" Return-path: Received: from mail6.bemta5.messagelabs.com ([195.245.231.135]) by lists.xen.org with esmtp (Exim 4.72) (envelope-from ) id 1Z7otG-0001bI-1S for xen-devel@lists.xenproject.org; Wed, 24 Jun 2015 17:55:14 +0000 In-Reply-To: <558ADB1E.2040103@oracle.com> List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Sender: xen-devel-bounces@lists.xen.org Errors-To: xen-devel-bounces@lists.xen.org To: Boris Ostrovsky Cc: elena.ufimtseva@oracle.com, wei.liu2@citrix.com, Ian Campbell , andrew.cooper3@citrix.com, Stefano Stabellini , ian.jackson@eu.citrix.com, xen-devel@lists.xenproject.org, =?UTF-8?Q?Roger_Pau_Monn=C3=A9?= List-Id: xen-devel@lists.xenproject.org --1342847746-1048548278-1435168455=:4360 Content-Type: text/plain; charset="UTF-8" Content-Length: 888 Content-Transfer-Encoding: quoted-printable On Wed, 24 Jun 2015, Boris Ostrovsky wrote: > On 06/24/2015 09:26 AM, Stefano Stabellini wrote: > > On Wed, 24 Jun 2015, Roger Pau Monn=C3=A9 wrote: > > > > > - PCI pass-through. > > Do we really need PCI pass-through=3F I see HVMlite mostly useful for > > Dom0, but also for higher security Linux and BSD guests. If a user wants > > PCI pass-through, she can always use PV on HVM. > > Why is this model not useful for a generic domU=3F I thought that it should > eventually become a replacement for what we now have as PVH=3F It is useful as generic DomU because it provides a smaller surface of attack compared to PV on HVM guests. At the same time using PCI pass-through increases that surface of attack again, decreasing the value of HVMLite/PVH, at least in my view. But you are right that it might be nice to have it for feature completeness, if nothing else. --1342847746-1048548278-1435168455=:4360 Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ Xen-devel mailing list Xen-devel@lists.xen.org http://lists.xen.org/xen-devel --1342847746-1048548278-1435168455=:4360--