Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 09 Apr 2021 13:05:37 +0000
From:      bugzilla-noreply@freebsd.org
To:        virtualization@FreeBSD.org
Subject:   [Bug 251046] bhyve PCI passthrough does not work inside jail
Message-ID:  <bug-251046-27103-uc9xCLu6jV@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-251046-27103@https.bugs.freebsd.org/bugzilla/>
References:  <bug-251046-27103@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D251046

--- Comment #6 from neirac <cneirabustos@gmail.com> ---
(In reply to Peter Wemm from comment #5)

Currently illumos is able to do pci-passthrough with bhyve running inside a
zone, that gives you an extra layer of security,if there is escape from the
hypervisor then the attacker will land on a jail and not the host system.

Here are relevant links on how is used on illumos :

https://movementarian.org/blog/posts/2018-10-26-pci-pass-through-support-wi=
th-bhyve-and-smartos/

https://www.cyber-tec.org/2019/05/29/using-bhyve-pci-passthrough-on-omnios/

I think it would be nice to have this feature on FreeBSD jails, as Mark sta=
ted=20
"better solution would be to extend pci(4) so that bhyve can use it to do
everything required for PCI passthrough."
I would like to explore this option any pointer on how to start would be re=
ally
good.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-251046-27103-uc9xCLu6jV>