Re: [libvirt] [PATCH] Add huge page support to libvirt..

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



* Daniel P. Berrange (berrange@xxxxxxxxxx) wrote:
> On Thu, Jul 23, 2009 at 11:35:17AM -0700, Chris Wright wrote:
> > * Mark McLoughlin (markmc@xxxxxxxxxx) wrote:
> > > I'd suggest /dev/hugepages as the default - /hugetlbfs has an seriously
> > > unstandard whiff about it
> > 
> > What about /var/lib/libvirt/qemu/hugetlb and having the whole thing under
> > libvirt's control?  It can allow for better security I think.
> 
> Does hugetlbfs support extended attributes ?  If so, the sVirt will
> automatically ensure isolation of each VM's backing file. If it
> doesn't supported extended attrs, then using hugetlbs at all would
> seem to blow a huge hole in our security model ...  

You should be able to specify a per mount point security context.
There is no xattr support for hugetlbfs.

thanks,
-chris

--
Libvir-list mailing list
Libvir-list@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/libvir-list

[Index of Archives]     [Virt Tools]     [Libvirt Users]     [Lib OS Info]     [Fedora Users]     [Fedora Desktop]     [Fedora SELinux]     [Big List of Linux Books]     [Yosemite News]     [KDE Users]     [Fedora Tools]