It's now all use shadow_mode_external, and use a permit bitmap for hypercall from vmx domain. Do you think it's now acceptable? It's against 1657. Keir Fraser wrote: > > On 25 May 2005, at 07:26, Ling, Xiaofeng wrote: > >> Or we use shadow_mode_external() to separate the path? > > > That would make sense. Also push the test into the copy routines > themselves. > > entry.S is a big mess now. Consider pulling *all* the vmx stuff out into > vmx.S. > > -- Keir >