> > Note this is not so simple, there are many other issues you should > > consider. > > Is it just complicated, not upstreamable, or are the unsolved issues > like security holes or the need to paravirtualize the guest? Well, I let you read the paper first :) It will answer all these questions. In a nutshell, Complicated: that always depends who you ask and relative to what you consider something complicated. ELI changes some critical points in KVM. Unsolved issues: there are some issues solves in theory but not implemented Security holes: not if you are OK with the threat model we describe in the paper need paravirtualize the guest: no if you have x2APIC. -- To unsubscribe from this list: send the line "unsubscribe kvm" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html