Xen 
 
Home About Xen.org Xen Xen Summit Wiki Mailing List Bug Tracker Xen Downloads
 
   
 

xense-devel

Re: [Xense-devel] [Q] about ACM/IA64 status

To: Reiner Sailer <sailer@xxxxxxxxxx>, xense-devel@xxxxxxxxxxxxxxxxxxx
Subject: Re: [Xense-devel] [Q] about ACM/IA64 status
From: Atsushi SAKAI <sakaia@xxxxxxxxxxxxxx>
Date: Mon, 05 Jun 2006 15:16:11 +0900
Delivery-date: Sun, 04 Jun 2006 23:17:08 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
In-reply-to: (Your message of "Wed, 31 May 2006 23:57:11 -0400") <OF1748D0F9.C8CAD63B-ON85257180.00127348-85257180.0015B75F@xxxxxxxxxx>
List-help: <mailto:xense-devel-request@lists.xensource.com?subject=help>
List-id: "A discussion list for those developing security enhancements for Xen." <xense-devel.lists.xensource.com>
List-post: <mailto:xense-devel@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xense-devel>, <mailto:xense-devel-request@lists.xensource.com?subject=unsubscribe>
References: <OF1748D0F9.C8CAD63B-ON85257180.00127348-85257180.0015B75F@xxxxxxxxxx>
Sender: xense-devel-bounces@xxxxxxxxxxxxxxxxxxx
Hello Reiner

 I survey the possibility of implementing ACM to IA64.
The problem is that
the current ACM uses grub/multiboot specification.
(IA64 uses elilo at this moment. not grub)
To correctly implment ACM, we need to add multiboot specification to elilo.
Regrettably I have not enough time to implement the multiboot at this moment.

Thanks,
Atsushi SAKAI


>Hello Atsushi,
>
>thank you for your interest.
>
>> But At this moment,  Xen/IA64 CS10233(Xen-IA64-Unstable)
>> seems not support ACM.(I checked it by acm_init)
>
>We aim to support with the ACM all Xen platforms, including IA64, as soon
>as possible. The place where I know that  we must check the architecture
>is the place you are correclty pointing out: where the ACM reads the
>security policy at boot time from the memory (where grub has placed it).
>The access/address translation to this memory region is architecture
>dependent.
>
>We will put this support item high up on our list of essential items to
>fix. Until we are able to add this support, you might get around this
>problem by loading the security policy manually after the boot instead of
>configuring a boot policy (using 'xm loadpolicy'). I currently work on
>I386 platforms and I would be interested if this the only dependency on
>IA64 and if this work-around succeeds (compilation and run-time).
>
>This is a pretty active time and we are constantly working to complete the
>coverage of the ACM (resources and network, architecture support).
>Feedback, such as yours,  is of great value to us!
>
>Kindest Regards
>Reiner
>
>
>xense-devel-bounces@xxxxxxxxxxxxxxxxxxx wrote on 05/31/2006 10:27:09 PM:
>
>> Hello Reiner,
>>
>>  I have a question about ACM support on IA64 platform.
>> You send a patch for Hypervisor call macro.
>> The patch includes IA64 platform.
>>
>> But At this moment,  Xen/IA64 CS10233(Xen-IA64-Unstable)
>> seems not support ACM.(I checked it by acm_init)
>>
>> Are You plan to support ACM/IA64 near future?
>>
>> Thanks,
>> Atsushi SAKAI
>>
>>
>>
>> _______________________________________________
>> Xense-devel mailing list
>> Xense-devel@xxxxxxxxxxxxxxxxxxx
>> http://lists.xensource.com/xense-devel



------------------------------------------------------------
富士通(株) プラットフォーム技術開発本部 仮想システム開発統括部
酒井 敦    Email   sakaia@xxxxxxxxxxxxxx
                TEL     7124-4167(4月7日より)




_______________________________________________
Xense-devel mailing list
Xense-devel@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xense-devel

<Prev in Thread] Current Thread [Next in Thread>
  • Re: [Xense-devel] [Q] about ACM/IA64 status, Atsushi SAKAI <=