I-Xen 4.17 isivele ikhishiwe futhi lezi yizindaba zayo

Xen

I-Xen iyi-hypervisor ehlinzeka ngokuhlukaniswa okuvikelekile, ukulawula insiza, iziqinisekiso zekhwalithi yesevisi, nokufuduka komshini okubonakalayo.

Ngemuva konyaka wentuthuko, ukwethulwa kwe- inguqulo entsha ye-hypervisor yamahhala I-Xen 4.17, inguqulo lapho ukwakhiwa kwezibuyekezo zegatsha le-Xen 4.17 kuzohlala kuze kube uJuni 12, 2024 kanye nokukhishwa kokulungiswa kobungozi kuze kube umhla ka-12 Disemba 2025.

Kuhle ukusho ukuthi izinkampani ezifana ne-Amazon, Arm, Bitdefender, Citrix, EPAM Systems kanye ne-Xilinx (AMD) zibe nesandla ekuthuthukisweni kwenguqulo entsha.

Izici ze-Xen 4.17 Main

Kule nguqulo entsha eyethulwa, kugqanyiswe ukuthi i ikhono lokuchaza ukucushwa kwe-Xen okumile kumasistimu e-ARM okufaka ikhodi kusengaphambili zonke izinsiza ezidingekayo ukuze kuqalwe amasistimu wezihambeli. zonke izinsizanjengenkumbulo eyabiwe, iziteshi zesaziso somcimbi, nesikhala senqwaba ye-hypervisor, zabiwe kusengaphambili ekuqaleni kwe-hypervisor esikhundleni sokwabiwa ngokuguquguqukayo, okususa amathuba okwehluleka ngenxa yokuntuleka kwezinsiza.

Ngokuba amasistimu ashumekiwe asuselwe ekwakhiweni kwe-ARM, selusetshenzisiwe ukwesekwa kokuhlola (ukubuka kuqala kobuchwepheshe) Ngokwenza izinto ezibonakalayo kwe-I/O kusetshenziswa izivumelwano ze-VirtIO, i-virtio-mmio isetshenziselwa ukuxhumana nedivayisi ebonakalayo ye-I/O, enikeze amandla ukuhambisana nezinhlobonhlobo zamadivayisi we-VirtIO. Singathola futhi ukuhambisana okusetshenziswa endaweni engaphambili ye-Linux, ene-libxl/xl, imodi ye-dom0less kanye nezingemuva ze-userspace.

Olunye ushintsho olugqamile yi ukusekelwa okuthuthukisiwe kwemodi ye-dom0less, ukuthi ivumela ukugwema ukusebenzisa indawo ye-dom0 lapho uqala imishini ebonakalayo ekuqaleni kwe-server boot.

I- ikhono lokuchaza amaqembu e-CPU (CPUPOOL) esigabeni sokuqalisa (ngesihlahla sedivayisi), okuyinto ivumela ukusebenzisa amaqembu ekucushweni ngaphandle kwe-dom0, isibonelo, ukuxhumanisa izinhlobo ezihlukene zama-CPU cores kumasistimu e-ARM asekelwe enkulu.LITTLE architecture, ehlanganisa ama-cores anamandla, kodwa alambele amandla, nama-cores akhiqiza kancane, kodwa awonga amandla amaningi. Ukwengeza, i-dom0less inikeza ikhono lokubophezela i-paravirtualization frontend/backend ezivakashini, okukuvumela ukuba uqalise izihambeli ngamadivayisi adingekayo e-paravirtualized.

Ezinhlelweni ze-ARM, inkumbulo virtualization izakhiwo (P2M, ngokomzimba ukuya emshinini) manje abelwe kusuka ku-memory pool edaliwe lapho kwakhiwa isizinda, okuvumela ukuzihlukanisa okungcono phakathi kwezihambeli lapho kwenzeka ukwehluleka okuhlobene nenkumbulo.

Kuzinhlelo x86, amakhasi we-IOMMU asekelwe (ikhasi elikhulu) lazo zonke izinhlobo zesistimu yesivakashi, okuvumela ukusebenza okungeziwe lapho udlulisela amadivayisi, i-PCI, kanye wengeze usekelo lwabasingathi abafika ku-12TB we-RAM. Esigabeni sokuqalisa, ikhono lokusetha imingcele ye-cpuid ye-dom0 liyasetshenziswa. Amapharamitha angu-VIRT_SSBD kanye ne-MSR_SPEC_CTRL ahlongozwa ukuze alawule ukuvikelwa kwezinga le-hypervisor ekuhlaselweni kwe-CPU kumasistimu wezihambeli.

Of ezinye izinguquko okugqamile:

  • Ukuvikelwa okungeziwe ngokumelene nokuba sengozini kwe-Specter-BHB ku-processor microarchitecture izakhiwo zezinhlelo ze-ARM.
  • Kuzinhlelo ze-ARM, ikhono lokusebenzisa i-Zephyr OS endaweni yempande ye-Dom0 liyanikezwa.
    Kungenzeka kube nomhlangano ohlukile we-hypervisor (ngaphandle kwesihlahla) unikezwa.

Ngokwehlukana, okokuthutha kwe-VirtIO-Grant kuyathuthukiswa, okuhlukile ku-VirtIO-MMIO ezingeni eliphezulu lokuphepha kanye nekhono lokuqhuba abalawuli esizindeni esihlukile esizimele sabalawuli.

Esikhundleni sokwenza imephu eqondile yenkumbulo, i-VirtIO-Grant isebenzisa ukuhunyushwa kwamakheli endawo yesihambeli kuzixhumanisi zokuqashisa, okuvumela ukusetshenziswa kwezindawo zenkumbulo okwabelwana ngazo okwavunyelwana ngazo kusengaphambili ukuze kushintshwe idatha phakathi kwesivakashi ne-backend ye-VirtIO. , ngaphandle kokunikeza indawo engemuva ilungelo yenza imephu yememori. Usekelo lwe-VirtIO-Grant seluvele lufakiwe ku-Linux kernel, kodwa alukafakwa ku-QEMU, i-virtio-vhost kanye nezingemuva zamathuluzi (libxl/xl).

Isinyathelo se-Hyperlaunch siyaqhubeka nokuthuthukiswa ukuze sinikeze amathuluzi avumelana nezimo zokwenza ngokwezifiso ukwethulwa kwemishini ebonakalayo ngesikhathi sokuqalisa isistimu. Njengamanje, isethi yokuqala yama-patches isilungile, okwenza kube lula ukuchaza izizinda ze-PV nokudlulisa izithombe zabo ku-hypervisor ekulayisheni. wena

Okokugcina Uma unentshisekelo yokwazi okwengeziwe ngayo, ungabonisana imininingwane ekulesi sixhumanisi esilandelayo.


Shiya umbono wakho

Ikheli lakho le ngeke ishicilelwe. Ezidingekayo ibhalwe nge *

*

*

  1. Unomthwalo wemfanelo ngedatha: AB Internet Networks 2008 SL
  2. Inhloso yedatha: Lawula Ugaxekile, ukuphathwa kwamazwana.
  3. Ukusemthethweni: Imvume yakho
  4. Ukuxhumana kwemininingwane: Imininingwane ngeke idluliselwe kubantu besithathu ngaphandle kwesibopho esisemthethweni.
  5. Isitoreji sedatha: Idatabase ebanjwe yi-Occentus Networks (EU)
  6. Amalungelo: Nganoma yisiphi isikhathi ungakhawulela, uthole futhi ususe imininingwane yakho.