> -----Original Message-----
> Date: Wed, 02 Apr 2008 08:23:34 +0100
> From: Keir Fraser <keir.fraser@eu.citrix.com>
> Subject: [Xen-devel] Re: [PATCH] [RFC] scrub pages when balloon frees
> them
> To: Stefan Berger <stefanb@us.ibm.com>, xen-devel
> <xen-devel@lists.xensource.com>
> Message-ID: <C418F306.15961%keir.fraser@eu.citrix.com>
> Content-Type: text/plain; charset="US-ASCII"
>
> The domain is responsible for scrubbing its own secrets while it is alive.
But not when domain shuts down - otherwise it breaks (quite reasonable)
kernel assumption that following shutdown memory pages won''t be
accessible
so that there''s no need to scrub them. Stefan''s suggestion
seem to plug that
hole.
Regards,
Andrey
>
> -- Keir
>
> On 2/4/08 02:46, "Stefan Berger" <stefanb@us.ibm.com>
wrote:
>
> > When a domain is killed, all its memory pages are cleared. However, I
> > looked at the code path that is run when a domain releases memory from
> > the balloon and could not find code that would scrub these pages. So I
> > added this line, but I am wondering whether previously it was
forgotten
> > or not done due to some other reason?
> >
> > Signed-off-by: Stefan Berger <stefanb@us.ibm.com>
> >
_______________________________________________
Xen-devel mailing list
Xen-devel@lists.xensource.com
http://lists.xensource.com/xen-devel