Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 09 Apr 2021 13:05:37 +0000
From:      bugzilla-noreply@freebsd.org
To:        virtualization@FreeBSD.org
Subject:   [Bug 251046] bhyve PCI passthrough does not work inside jail
Message-ID:  <bug-251046-27103-uc9xCLu6jV@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-251046-27103@https.bugs.freebsd.org/bugzilla/>
References:  <bug-251046-27103@https.bugs.freebsd.org/bugzilla/>

index | next in thread | previous in thread | raw e-mail

https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=251046

--- Comment #6 from neirac <cneirabustos@gmail.com> ---
(In reply to Peter Wemm from comment #5)

Currently illumos is able to do pci-passthrough with bhyve running inside a
zone, that gives you an extra layer of security,if there is escape from the
hypervisor then the attacker will land on a jail and not the host system.

Here are relevant links on how is used on illumos :

https://movementarian.org/blog/posts/2018-10-26-pci-pass-through-support-with-bhyve-and-smartos/

https://www.cyber-tec.org/2019/05/29/using-bhyve-pci-passthrough-on-omnios/

I think it would be nice to have this feature on FreeBSD jails, as Mark stated 
"better solution would be to extend pci(4) so that bhyve can use it to do
everything required for PCI passthrough."
I would like to explore this option any pointer on how to start would be really
good.

-- 
You are receiving this mail because:
You are the assignee for the bug.

help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-251046-27103-uc9xCLu6jV>