[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-users] Need help



Is it possible to get dom0 access from domU? And if I have dom0 access, what are the threats to domU? Is it possible to simulate an attack on dom0 or domU? I need a urgent help, As my academic work I am working on it.

If you want moderately secure access to Dom0, put it on the intranet (network) with a static IP and setup SSH.  With SSH and pam.d configured it can be as secure as you need it.

With SSH you gain console access (all you really need for Xen controls), file transfer access via SFTP, and with console you can even temporarily enable services for say a video connection to Dom0 (if you intend to use GUI applications).

I know that there are security risks with shared devices from Dom0 to DomU, including PCI Passthrough, but I can't really help you on the details with that end of things.

I'm sure other users can contribute more on the security aspects, I am more for functionality.

~Casey

On Sat, May 12, 2012 at 4:26 PM, Omkar Kulkarni <om.kulkarni41@xxxxxxxxx> wrote:

Is it possible to get dom0 access from domU? And if I have dom0 access, what are the threats to domU? Is it possible to simulate an attack on dom0 or domU? I need a urgent help, As my academic work I am working on it.


_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxx
http://lists.xen.org/xen-users

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxx
http://lists.xen.org/xen-users

 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.