Xen Security Redux

Xen Security Redux

So; I have in the past eviscerated Xen's ability ot be secured, but this was (thankfully) a short term problem. It is now possible to lock Xen to a root privileged unix socket, and to completely disable the IP ports. The downside of this is that domain migration is not available (or so I believe, I have not actually tried it, but I cannot see any way it could have been done).

In related news, Enomalism is coming along FABU lately! I have the system starting and stopping Xen instances from the web interface, authenticating via LDAP to a fedora-DS or openLDAP server, and I am nearly finished the Provisioning tools. When those are done, Enomalism will have met nearly all of it's launch requirements. No more details right now unfortunately, since I am not sure how much detail I am allowed to disclose, but rest assured that Enomalism will kick ass, mostly because it already does.

Home Home
http://www.reaysmoving.com/