[libvirt] [PATCH 2/3] qemu: cgroup: Expose /dev/sev/ only to domains that require SEV

Michal Privoznik mprivozn at redhat.com
Tue Jan 29 12:26:48 UTC 2019


On 1/23/19 1:57 PM, Erik Skultety wrote:
> SEV has a limit on number of concurrent guests. From security POV we
> should only expose resources (any resources for that matter) to domains
> that truly need them.
> 
> Signed-off-by: Erik Skultety <eskultet at redhat.com>
> ---
>   src/qemu/qemu_cgroup.c | 19 +++++++++++++++++++
>   1 file changed, 19 insertions(+)

ACK

Michal




More information about the libvir-list mailing list