[Gllug] Letting Bohcs, UML or vmware have direct access to a PCI card or a SCSI device (not disk).

Russell Howe rhowe at siksai.co.uk
Fri Sep 16 10:51:53 UTC 2005


On Fri, Sep 16, 2005 at 09:55:25AM +0100, Nix wrote:
> That depends on whether the VM is executing non-privileged code. A VM
> executing non-privileged code shouldn't allow that code to send
> arbitrary SCSI commands.

Isn't the entire VM classed as 'unpriviledged code' by whatever
container it's running in (e.g. the host kernel in the case of UML, or
domain 0 in the case of Xen)?

At least, I'd say that's the case if the VM system is emulating a
complete virtual machine.. with UML, I'd say the virtualisation boundary
lies at the syscall level within the UML instance.

-- 
Russell Howe       | Why be just another cog in the machine,
rhowe at siksai.co.uk | when you can be the spanner in the works?
-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug




More information about the GLLUG mailing list