Hi,

On 06/10/2021 13:32, Moustafa Nofal wrote:
I have a question regarding security at  the root-cell.
The use case is shutting down the root cell, which definitely will shut other cells down. I understand that it is possible, to disable these commands, but is there any other possible approach? Is there any special security constraints, that Jailhouse user has to consider.

you want to forbid the root cell to shutdown a non-root cell, without an acknowledgment from the non-root cell?

Take a look here:
https://github.com/lfd/jailhouse/blob/master/Documentation/hypervisor-interfaces.txt#L390

  Ralf


Thanks in Advance
Moustafa Noufale

--
You received this message because you are subscribed to the Google Groups "Jailhouse" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected] <mailto:[email protected]>. To view this discussion on the web visit https://groups.google.com/d/msgid/jailhouse-dev/84ad6258-709d-48cc-b3f2-38d0cc95057cn%40googlegroups.com <https://groups.google.com/d/msgid/jailhouse-dev/84ad6258-709d-48cc-b3f2-38d0cc95057cn%40googlegroups.com?utm_medium=email&utm_source=footer>.

--
You received this message because you are subscribed to the Google Groups 
"Jailhouse" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/jailhouse-dev/d7952c28-ed16-5e73-84c4-c28803cb5892%40oth-regensburg.de.

Reply via email to