From owner-freebsd-virtualization@FreeBSD.ORG Sat Feb 8 20:01:25 2014 Return-Path: Delivered-To: freebsd-virtualization@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 27C647C9 for ; Sat, 8 Feb 2014 20:01:25 +0000 (UTC) Received: from mail-pa0-x22b.google.com (mail-pa0-x22b.google.com [IPv6:2607:f8b0:400e:c03::22b]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by mx1.freebsd.org (Postfix) with ESMTPS id E8DC81A22 for ; Sat, 8 Feb 2014 20:01:24 +0000 (UTC) Received: by mail-pa0-f43.google.com with SMTP id rd3so4554889pab.16 for ; Sat, 08 Feb 2014 12:01:24 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=kowxfhgJe+zjd92AYtqQG+wS1lvOD6IEAVOYnj+gX6M=; b=fK2F9okK/Lf2hIEc1SbWoq65ek0yRIR+qQUFovDJJuR9+bocEyLiRh0A2kmIa68Gig YiEbAj0unbFIMxrQH/X/4jsCHG9PMKM3TvdEmanBl5ZerfsOYplOAXpitnvNXgMujutM KaaxG1ZKBEmS4atgzqFG8tbFo480Ko+ncE2JnS96UlWJ7QvPz0xyFfbtcvZgJf0PaC5q K38k9+/jVJoyrf4hvfFvASG3RBJJvlhEx5bGprH/0nm7WyBse+F3U9slFaAnQXsU2OT6 HWVdkDZh4objaNJ3WqWnN09HRX4Ee7MEkjk7tS+ndRQPrf3HeU+FIZmLQjr/kMTL28cX OtTQ== MIME-Version: 1.0 X-Received: by 10.66.27.201 with SMTP id v9mr16131165pag.136.1391889684471; Sat, 08 Feb 2014 12:01:24 -0800 (PST) Received: by 10.70.92.71 with HTTP; Sat, 8 Feb 2014 12:01:24 -0800 (PST) In-Reply-To: References: <52F5363D.8040102@freebsd.org> Date: Sat, 8 Feb 2014 14:01:24 -0600 Message-ID: Subject: Re: Report of my virtual network lab migrated from virtualbox to bhyve From: Adam Vande More To: Aryeh Friedman Content-Type: text/plain; charset=ISO-8859-1 X-Content-Filtered-By: Mailman/MimeDel 2.1.17 Cc: FreeBSD virtualization X-BeenThere: freebsd-virtualization@freebsd.org X-Mailman-Version: 2.1.17 Precedence: list List-Id: "Discussion of various virtualization techniques FreeBSD supports." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 08 Feb 2014 20:01:25 -0000 On Sat, Feb 8, 2014 at 6:51 AM, Aryeh Friedman wrote: > > bhyve blindly read/writes into the middle of the file without consulting > the filesystem and thus bypassing any things like sparse fill in.... namely > all you gain is a few seconds of startup time (matter of fact I think > truncate might use sparse allocation [i.e. attempting to read into the > middle with guest OS control will result in potentially seeing host data]) > If this is true then there is a *critical* security issue. Using sparse files isn't to gain performance, it's to conserve disk space. Using md devices backed by sparse images would accomplish this. If the sparsify app works on FreeBSD, then there should be no problem using those type of volumes. -- Adam