From: Keir Fraser <keir.fraser@eu.citrix.com>
To: Joanna Rutkowska <joanna@invisiblethingslab.com>
Cc: "Han, Weidong" <weidong.han@intel.com>,
"Cihula, Joseph" <joseph.cihula@intel.com>,
"Kay, Allen M" <allen.m.kay@intel.com>,
"xen-devel@lists.xensource.com" <xen-devel@lists.xensource.com>
Subject: Re: philosophically about IGD pass-through (was: feature suggestion: DMAR table emulation for Xen)
Date: Fri, 14 May 2010 13:30:13 +0100 [thread overview]
Message-ID: <C81300E5.144EF%keir.fraser@eu.citrix.com> (raw)
In-Reply-To: <4BED3854.9090801@invisiblethingslab.com>
On 14/05/2010 12:47, "Joanna Rutkowska" <joanna@invisiblethingslab.com>
wrote:
> It's good to distinguish 3D acceleration for the *Window Manager* vs. 3D
> acceleration for the *apps*. In Qubes we keep the Window Manager in
> Dom0, so, as long as the graphics driver is not broken, the Window
> Manager gets all the fancy 3D effects, just like on the native.
>
> The only(?) advantage you gain by using graphics passthorugh is for the
> apps. But is it really worth it? How many 3D-capable apps business users
> use today? Google Earth? Anything else? So, in order to support Google
> Earth, is it really worth to introduce potential VM escape attacks?
Well, XenClient != Qubes. ;-) Different system architecture; different
threat model; and probably different usage scenarios as well.
-- Keir
next prev parent reply other threads:[~2010-05-14 12:30 UTC|newest]
Thread overview: 19+ messages / expand[flat|nested] mbox.gz Atom feed top
2010-05-13 14:14 feature suggestion: DMAR table emulation for Xen Joanna Rutkowska
2010-05-14 5:41 ` Kay, Allen M
2010-05-14 9:22 ` Joanna Rutkowska
2010-05-14 9:35 ` Keir Fraser
2010-05-14 10:15 ` Joanna Rutkowska
2010-05-14 10:48 ` Keir Fraser
2010-05-14 10:58 ` Joanna Rutkowska
2010-05-14 11:29 ` Keir Fraser
2010-05-14 11:47 ` philosophically about IGD pass-through (was: feature suggestion: DMAR table emulation for Xen) Joanna Rutkowska
2010-05-14 11:58 ` James Harper
2010-05-14 12:30 ` Keir Fraser [this message]
2010-05-14 15:57 ` Dan Magenheimer
2010-05-14 16:43 ` philosophically about IGD pass-through Joanna Rutkowska
2010-05-14 17:54 ` philosophically about IGD pass-through (was: feature suggestion: DMAR table emulation for Xen) Kay, Allen M
2010-05-15 16:54 ` feature suggestion: DMAR table emulation for Xen Ian Pratt
2010-05-15 17:12 ` IGD passthrough security (was Re: feature suggestion: DMAR table emulation for Xen) Joanna Rutkowska
2010-05-14 9:41 ` feature suggestion: DMAR table emulation for Xen Barde Kaushik 00901718
2010-05-14 10:16 ` Joanna Rutkowska
2010-05-14 14:25 ` Barde Kaushik 00901718
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=C81300E5.144EF%keir.fraser@eu.citrix.com \
--to=keir.fraser@eu.citrix.com \
--cc=allen.m.kay@intel.com \
--cc=joanna@invisiblethingslab.com \
--cc=joseph.cihula@intel.com \
--cc=weidong.han@intel.com \
--cc=xen-devel@lists.xensource.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).