All of lore.kernel.org
 help / color / mirror / Atom feed
* On x86_64 Xen Implementation
@ 2008-07-21 10:50 BVK Chaitanya
  2008-07-21 11:17 ` Andre Przywara
  0 siblings, 1 reply; 2+ messages in thread
From: BVK Chaitanya @ 2008-07-21 10:50 UTC (permalink / raw)
  To: Xen-devel

Hi,

Xen 3.0 inteface manual says:

On 64-bit systems it is not possible to protect the hypervisor from 
untrusted guest code running in rings 1 and 2. Guests are therefore 
restricted to run in ring 3 only. The guest kernel is protected from its 
applications by context switching between the kernel and currently 
running application.

Can anybody explain (or provide me pointers) to what x86_64 features 
make protecting hypervisor from untrusted guest (kernels) impossible? 
Is x86_64 (by-design) makes x86's 4 rings feature obsolete?


thanks,
--
bvk-chaitanya

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2008-07-21 11:17 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2008-07-21 10:50 On x86_64 Xen Implementation BVK Chaitanya
2008-07-21 11:17 ` Andre Przywara

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.