[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-users] which is the best way to setup DomU's kernel location


  • To: Ady Deac <ady@xxxxxxxxxxx>
  • From: Ian Murray <murrayie@xxxxxxxxxxx>
  • Date: Sun, 20 Sep 2009 06:22:18 -0700 (PDT)
  • Cc: xen-users@xxxxxxxxxxxxxxxxxxx
  • Delivery-date: Sun, 20 Sep 2009 06:22:58 -0700
  • Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=yahoo.co.uk; h=Message-ID:X-YMail-OSG:Received:X-Mailer:References:Date:From:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type:Content-Transfer-Encoding; b=cjXuj16xkCv//y+a3I1Mb8Hxg0DftYJZMA5uy/ZVLR0KjOB4eSKNNGzF5h646JoaVZY/Ir5jMBOHLUj5OGsfiHpW2HwiijGBiquv7yLMOSThsjqqKUI5S7I5sEMVVSHj5By8HtE4ZLh3ITxFfczwbZmhIRMCA1/eklYIRrTVAik=;
  • List-id: Xen user discussion <xen-users.lists.xensource.com>




----- Original Message ----
> From: Ady Deac <ady@xxxxxxxxxxx>
> To: Ian Murray <murrayie@xxxxxxxxxxx>
> Sent: Sunday, 20 September, 2009 10:33:43
> Subject: Re: [Xen-users] which is the best way to setup DomU's kernel location
> 
> Hi Ian,
> 
> Heh, you learn something new each day. ;) Thanks for the tip!
> 
> Anyways, you still need to build the custom kernel. :P
> 
> Have phun!
> 

Hi,

No you don't. I am using pygrub with all my PV DomU's, using the
standard distribution kernels that come with CentOS 5.x in both Dom0
and DomU.

Of pvGrub and pyGrub, I think pvgrub is the preferred option because of 
inherent security problems with pyGrub, but is available on newer hypervisors 
and not on the std CentOS hypervisor. I think the security issue goes along the 
lines of the DomU can affect something that runs on the Dom0 (pyGrub) by 
manipulating the grub menu in the DomU. This could be part of an attack, if 
some other vector is discovered in pygrub. Something like that, I think. I am 
sure some one will correct me, if I am wrong about that.

HTH,

Ian.





_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users


 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.