#xen — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #xen, aggregated by home.social.
-
Reading up a bit on Linux containers
I wonder if the efficiency of them is close to that of freeBSD jails
#Containers #VM #freeBSD #jails #programming #XEN #networking
-
Reading up a bit on Linux containers
I wonder if the efficiency of them is close to that of freeBSD jails
#Containers #VM #freeBSD #jails #programming #XEN #networking
-
XenServer 9: Now from Citrix again – and not just for desktops
Citrix introduces XenServer 9 as a preview. The new major version updates the hypervisor and aligns it for all workload types.
-
XenServer 9: Now from Citrix again – and not just for desktops
Citrix introduces XenServer 9 as a preview. The new major version updates the hypervisor and aligns it for all workload types.
-
XenServer 9: Now from Citrix again – and not just for desktops
Citrix introduces XenServer 9 as a preview. The new major version updates the hypervisor and aligns it for all workload types.
-
XenServer 9: Now from Citrix again – and not just for desktops
Citrix introduces XenServer 9 as a preview. The new major version updates the hypervisor and aligns it for all workload types.
-
XenServer 9: Now from Citrix again – and not just for desktops
Citrix introduces XenServer 9 as a preview. The new major version updates the hypervisor and aligns it for all workload types.
-
citrix XenServer 9 has been published today.
be aware of some changes:
* systemd "predictable" network interface names in dom0
* Host BIOS Boot Support has been removed
* Linux Bridge Network Stack has been removed
https://docs.xenserver.com/en-us/xenserver/9/whats-new
#citrix #XenServer #Xen -
XenServer 9: Jetzt wieder von Citrix – und nicht nur für Desktops
Citrix stellt XenServer 9 als Preview vor. Die neue Hauptversion aktualisiert den Hypervisor und richtet ihn auf alle Workload-Typen aus.
-
XenServer 9: Jetzt wieder von Citrix – und nicht nur für Desktops
Citrix stellt XenServer 9 als Preview vor. Die neue Hauptversion aktualisiert den Hypervisor und richtet ihn auf alle Workload-Typen aus.
-
XenServer 9: Jetzt wieder von Citrix – und nicht nur für Desktops
Citrix stellt XenServer 9 als Preview vor. Die neue Hauptversion aktualisiert den Hypervisor und richtet ihn auf alle Workload-Typen aus.
-
XenServer 9: Jetzt wieder von Citrix – und nicht nur für Desktops
Citrix stellt XenServer 9 als Preview vor. Die neue Hauptversion aktualisiert den Hypervisor und richtet ihn auf alle Workload-Typen aus.
-
XenServer 9: Jetzt wieder von Citrix – und nicht nur für Desktops
Citrix stellt XenServer 9 als Preview vor. Die neue Hauptversion aktualisiert den Hypervisor und richtet ihn auf alle Workload-Typen aus.
-
What would be the equivalent of Scheduler KIST (a C-tor option at one time) in #Rust #Arti #tor? Certainly not an option in the future paradigm. A man pages for the Cargo modules at (crates.io)? We can see "low water" in Arti which is exactly the cure. But it appears that a priesthood of operators will be in control of the fine tuning the torrc once had.
- Tor network adversary obstructs and degrades service with traffic shaping techniques.
"active bandwidth perturbations"
https://arxiv.org/pdf/2605.05887- Threat Actor blocks tor from VMs
but TAILS not obstructed (virtuio pci, module xen uevent -- abstractions from hardware) -- pvh destroyed in Xen (libxl)
#TargetedHardware #LibrariesWeaponizedAgainstThePublic
#Qemu #KVM #Xen #Virtualization #Censorship #MT #TickTalk #SuperFilter -
What would be the equivalent of Scheduler KIST (a C-tor option at one time) in #Rust #Arti #tor? Certainly not an option in the future paradigm. A man pages for the Cargo modules at (crates.io)? We can see "low water" in Arti which is exactly the cure. But it appears that a priesthood of operators will be in control of the fine tuning the torrc once had.
- Tor network adversary obstructs and degrades service with traffic shaping techniques.
"active bandwidth perturbations"
https://arxiv.org/pdf/2605.05887- Threat Actor blocks tor from VMs
but TAILS not obstructed (virtuio pci, module xen uevent -- abstractions from hardware) -- pvh destroyed in Xen (libxl)
#TargetedHardware #LibrariesWeaponizedAgainstThePublic
#Qemu #KVM #Xen #Virtualization #Censorship #MT #TickTalk #SuperFilter -
as far as I understand
#Xen: What is the minimal hardware we need to emulate to get a VM? We might need to customise/change the operating system.
qemu(+kvm): Let's emulate the full PC with mainboard and all chipsets and everything. Damn that is slow. Lets reinvent optimised virtual hardware in the #VirtIO project.
-
-
-
CW: На днях появился BlueHammer — опубликованный прототип уязвимости нулевого дня в Windows-системах. Позволяет повысить права (привелегии) в системе до уровня учётной записи SYSTEM или расширенных админских.
Уязвимость нулевого дня оказалась опубликована вместе с протипом (примером) использования. Опубликовано человеком (Chaotic Eclipse), которому не удалось сообщить о проблеме через официальные каналы Microsoft, потому что соответствующее подразделение (MSRC) захотело прямо аж видео с подтверждением работоспособности данной уязвимости. Отказываясь иначе вести диалог и принимать информацию к сведению.
Это тот апофеоз тотальной идиотии, который преобладает в Microsoft последние 10+ лет. Ниже расписано более детально по этой теме.
Очередное дно пробито, но это не первый раз, а стабильность — это верный признак мастерства.
Нет такого, что Linux или BSD-системы вдруг стали модными и популярными, это людям приходится уходить с Windows-систем из-за такого качества работы Microsoft.
#bluehammer #microsoft #windows #cve #lang_ru @Russia
RE: https://hub.hubzilla.de/item/fadba136-52e4-46e3-9101-5d8c7b0d61fb -
#Xen jetzt mit 5 Jahren Sicherheitssupport
-
#Xen jetzt mit 5 Jahren Sicherheitssupport
-
At @bawuenet we're in the process of upgrading our #Xen #xcpng hypervisors to #uefi boot. Of course, we automate things and want to be able to reinstall our hypervisors from network boot. Our EFI netboot system is based on #ipxe which means it can only load EFI binaries. But xcp-ng ships the Xen kernel as a multiboot2 based image.
As probably one of the most weird ways to solve this problem, I've decided to chainload #grub2 from iPXE and learned a bit! 🧵 -
At @bawuenet we're in the process of upgrading our #Xen #xcpng hypervisors to #uefi boot. Of course, we automate things and want to be able to reinstall our hypervisors from network boot. Our EFI netboot system is based on #ipxe which means it can only load EFI binaries. But xcp-ng ships the Xen kernel as a multiboot2 based image.
As probably one of the most weird ways to solve this problem, I've decided to chainload #grub2 from iPXE and learned a bit! 🧵 -
I wish this post by the Xen Project existed years ago when I was trying to understand the differences between Xen and KVM. Would have been a great jumping point to dig deeper.
https://xenproject.org/blog/xen-at-fosdem-real-world-conversations-about-xen-and-kvm/
-
So back on #QubesOS / #Xen. There is definitely something wrong with how it forwards the A380 into the #windows VM.
Now that I've remote desktop enabled (and can conenct with the A380 disconnected just fine) I now can also see a black screen via RDP when the A380 is passed into it.
(Note: passing the two end devices, aka the one for the video and the one for the audio of the A380 worked just fine in KVM on #NixOS. So it is something Xen/QubesOS does that breaks it...
-
So back on #QubesOS / #Xen. There is definitely something wrong with how it forwards the A380 into the #windows VM.
Now that I've remote desktop enabled (and can conenct with the A380 disconnected just fine) I now can also see a black screen via RDP when the A380 is passed into it.
(Note: passing the two end devices, aka the one for the video and the one for the audio of the A380 worked just fine in KVM on #NixOS. So it is something Xen/QubesOS does that breaks it...
-
So rebooted into NixOS and after having compiled some food I've tried passing through the end devices using KVM. And well it works with KVM. So what is wrong with my #QubesOS aka. #Xen config then?
Also because I thought it was funny I also tried attaching the Intel A380 to a windows XP VM.
The generic driver for the video card doesn't work.
It has a generic audio driver that almost works. It matches the device but fails to start :p -
So rebooted into NixOS and after having compiled some food I've tried passing through the end devices using KVM. And well it works with KVM. So what is wrong with my #QubesOS aka. #Xen config then?
Also because I thought it was funny I also tried attaching the Intel A380 to a windows XP VM.
The generic driver for the video card doesn't work.
It has a generic audio driver that almost works. It matches the device but fails to start :p -
Oh, Xen cannot pcie passthrough "non endpoint devices" like KVM can. That makes things unnecessarily difficult...
Why can't I just passthrough the entire PCI-PCI bridge device?
-
Oh, Xen cannot pcie passthrough "non endpoint devices" like KVM can. That makes things unnecessarily difficult...
Why can't I just passthrough the entire PCI-PCI bridge device?
-
Sooo are we just going to ignore the vulnerability qsb-091-2023 "Xen Security Notice 1: winpvdrvbuild.xenproject.org potentially compromised"?
I do not see any more recent build of the XEN Windows PV Drivers.
Even the ones linked on the website https://xenproject.org/resources/downloads/ right now are only from 2023-07-13. Which is 11 days before that vulnerability was published.
Also the part that they replaced the executables with a warning text doesn't seem to apply to that website either...
-
Sooo are we just going to ignore the vulnerability qsb-091-2023 "Xen Security Notice 1: winpvdrvbuild.xenproject.org potentially compromised"?
I do not see any more recent build of the XEN Windows PV Drivers.
Even the ones linked on the website https://xenproject.org/resources/downloads/ right now are only from 2023-07-13. Which is 11 days before that vulnerability was published.
Also the part that they replaced the executables with a warning text doesn't seem to apply to that website either...
-
Each time I read stuff about Xen I want to prefer it. But then I see the benefit of running VMs and containers in parallel which is kind of not possible with Xen. Then I use bhyve/vmd/vmm/… again.
#Xen -
Is there any technical reason why one would consider using Xen (or XCP-ng) over KVM at this point?
-
Is there any technical reason why one would consider using Xen (or XCP-ng) over KVM at this point?
-
What do you think, what is the better thing to user for a home lab setup with 1 and maybe in 1-2 years a 2nd host that is also used as the main desktop.
Or should I go with a full on VCF install (just kidding, I'd at most I can run it nested, as I'd have almost 0 resources available once all of its management components have booted up)
-
What do you think, what is the better thing to user for a home lab setup with 1 and maybe in 1-2 years a 2nd host that is also used as the main desktop.
Or should I go with a full on VCF install (just kidding, I'd at most I can run it nested, as I'd have almost 0 resources available once all of its management components have booted up)
-
Morgen muss ich mein XCP-NG-Shirt anziehen, um wieder herunterzukommen von #AWS ESC und dem #BSI‑Thread, und ein Statement für eine großartige europäische Virtualisierungslösung von @vates abgeben. 😌
Wir können in Europa nämlich auch IT und so …
#vates #xcpng #virtualization #opensource #awsesc #digitalsovereignty #xen
-
Morgen muss ich mein XCP-NG-Shirt anziehen, um wieder herunterzukommen von #AWS ESC und dem #BSI‑Thread, und ein Statement für eine großartige europäische Virtualisierungslösung von @vates abgeben. 😌
Wir können in Europa nämlich auch IT und so …
#vates #xcpng #virtualization #opensource #awsesc #digitalsovereignty #xen
-
Xen from Omega X has covered The Truth Untold by BTS
https://www.youtube.com/watch?v=CTFvGPGHi1o -
Xen from Omega X has covered The Truth Untold by BTS
https://www.youtube.com/watch?v=CTFvGPGHi1o -
I'm looking for virtualization-based desktop Linux setup
I love virtualization in Linux and I would like to have operating system which will work only as minimal, air-gapped as much is possible host for my guest operating systems. Qubes OS project really interested me but it’s based on Xen hypervisor so it might cause troubles with GPU Passthrough which is really important for me also I’m more interested in KVM. In my case it’s not only about security and privacy but also about fun and learning. What can you recommend? I think that good choice might be Gentoo Linux because it allows for minimal installation and remove unnecessary software like CUPS, Bluetooth entirely with flags which will be great option for host only OS. But I had experience with Gentoo and it’s not easiest way 😅 Debian might be easier option but I will have less control over my system. Maybe you have other interesting options?
https://piefed.social/c/linux/p/1581319/i-m-looking-for-virtualization-based-desktop-linux-setup
-
[Перевод] Как я убедил виртуальную машину, что у неё есть кулер
Зачем вообще этим заморачиваться? Некоторые образцы malware выполняют различные проверки, чтобы определить, запущены ли они в виртуальной машине. Один из самых частых способов — проверка наличия определённых аппаратных компонентов, обычно не эмулируемых в виртуальных средах. Один из таких компонентов — кулер процессора . Например, malware может проверять наличие кулера процессора, поискав в WMI класс Win32_Fan : wmic path Win32_Fan get * Они делают это, чтобы не запускаться в виртуальных машинах, усложнив таким образом процесс анализа для исследователей безопасности. Зловредное ПО может определять, запущено ли оно в виртуальной машине, множеством разных способов. Есть различные классы WMI, позволяющие обнаружит присутствие виртуальной машины, например, Win32_CacheMemory , Win32_VoltageProbe и множество других . В этом посте я расскажу о кулере процессора. Мне просто понравилась идея убедить виртуальную машину, что он у неё есть. Однако такой же подход можно применить к другим аппаратным компонентам и классам WMI.
-
#KpopMonday theme: #CoversOfNotKpop
We Don't Talk Anymore covered by Xen of Omega X
https://www.youtube.com/watch?v=g0QgBP67SJA&ab_channel=OMEGAX
-
Interestingly, #seL4 would be a worse choice that #Xen for #QubesOS, due to its worse support for x86 speculative execution mitigations. Xen typically provides patches the day the embargo breaks, and Qubes OS users rely on that. There are various ways to make speculative execution less of a concern, but they don’t work for Qubes OS. This is because Qubes OS heavily overcommits CPU and allows execution of arbitrary untrusted code in VMs.
I don’t fault the seL4 developers for not focusing on a use-case that is practically the worst-case scenario for it. It just means that Qubes OS is very much more like a server than an embedded system, and so it needs a hypervisor that is designed for the kinds of workloads it runs.
-
Interestingly, #seL4 would be a worse choice that #Xen for #QubesOS, due to its worse support for x86 speculative execution mitigations. Xen typically provides patches the day the embargo breaks, and Qubes OS users rely on that. There are various ways to make speculative execution less of a concern, but they don’t work for Qubes OS. This is because Qubes OS heavily overcommits CPU and allows execution of arbitrary untrusted code in VMs.
I don’t fault the seL4 developers for not focusing on a use-case that is practically the worst-case scenario for it. It just means that Qubes OS is very much more like a server than an embedded system, and so it needs a hypervisor that is designed for the kinds of workloads it runs.
-
That Old NetBSD Server, Running Since 2010
https://it-notes.dragas.net/2023/08/27/that-old-netbsd-server-running-since-2010/
#NetBSD #Xen #Virtualization #SysAdmin #Containers #BSD #BSDs #IT
-
That Old NetBSD Server, Running Since 2010
https://it-notes.dragas.net/2023/08/27/that-old-netbsd-server-running-since-2010/
#NetBSD #Xen #Virtualization #SysAdmin #Containers #BSD #BSDs #IT
-
I have been receiving quite a few "too busy" responses regarding a bhyvecon during @EuroBSDCon and will give it this week.
Please reach out if you are interested in presenting or co-presenting!
#bhyve #Xen #VMM #Virtualization #FreeBSD #OpenBSD #NetBSD #illumos
-
I have been receiving quite a few "too busy" responses regarding a bhyvecon during @EuroBSDCon and will give it this week.
Please reach out if you are interested in presenting or co-presenting!
#bhyve #Xen #VMM #Virtualization #FreeBSD #OpenBSD #NetBSD #illumos